Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
An issue was discovered in all versions of PCManFM-Qt starting from 1.1.0. When a regular file's path is passed as a URI in an org.freedesktop.FileManager1.ShowFolders D-Bus method call, PCManFM-Qt delegates to a different program (based on the file type) without user confirmation. This could be used to achieve code execution or circumvent network namespace restrictions. NOTE: those outcomes are potentially unwanted by most users; however, the behavior of the product does comply with the applicable specification, and a simplistic solution (ensuring that the URI does not name a regular file) may have adverse consequences for I/O.
CVSS Information
N/A
Vulnerability Type
动态管理代码资源的控制不恰当
Vulnerability Title
PCManFM-Qt 安全漏洞
Vulnerability Description
PCManFM-Qt是LXQt开源的一款基于Qt的文件管理器。 PCManFM-Qt 1.1.0及之后版本存在安全漏洞,该漏洞源于当常规文件路径作为URI传递给org.freedesktop.FileManager1.ShowFolders D-Bus方法调用时,PCManFM-Qt在未经用户确认的情况下委托给不同程序,可能导致代码执行或绕过网络命名空间限制。
CVSS Information
N/A
Vulnerability Type
N/A