Temporary data passed between application components by Budgie Extras WeatherShow applet could potentially be viewed or manipulated. The data is stored in a location that is accessible to any user who has local access to the system. Attackers may pre-create and control this file to present false information to users or deny access to the application and panel.

Project Subscriptions

Vendors Products
Ubuntubudgie Subscribe
Budgie Extras Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2023-53329 Temporary data passed between application components by Budgie Extras WeatherShow applet could potentially be viewed or manipulated. The data is stored in a location that is accessible to any user who has local access to the system. Attackers may pre-create and control this file to present false information to users or deny access to the application and panel.
Ubuntu USN Ubuntu USN USN-6556-1 Budgie Extras vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: canonical

Published:

Updated: 2024-08-02T21:53:44.936Z

Reserved: 2023-11-27T03:17:52.865Z

Link: CVE-2023-49346

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2023-12-14T22:15:43.603

Modified: 2024-11-21T08:33:16.937

Link: CVE-2023-49346

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses