First published: Mon Nov 14 2022(Updated: )
GNOME Nautilus 42.2 allows a NULL pointer dereference and get_basename application crash via a pasted ZIP archive.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GNOME Nautilus | =42.2 | |
Fedoraproject Fedora | =36 | |
Fedoraproject Fedora | =37 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this vulnerability is CVE-2022-37290.
CVE-2022-37290 has a severity level of medium.
GNOME Nautilus version 42.2, Fedora version 36, and Fedora version 37 are affected by CVE-2022-37290.
CVE-2022-37290 can be exploited by pasting a ZIP archive, which can cause a NULL pointer dereference and application crash.
Yes, there are fixes available for CVE-2022-37290. You can find more information in the referenced links.