Deepin / Deepin-Clone
3 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2019-13228 | deepin-clone before 1.1.3 uses a fixed path /tmp/repo.iso in the BootDoctor::fix() function to download an ISO file, and follows symlinks there. An unprivilege… | MEDIUM | 4.7 | Jul 4, 2019 |
| CVE-2019-13227 | In GUI mode, deepin-clone before 1.1.3 creates a log file at the fixed path /tmp/.deepin-clone.log as root, and follows symlinks there. An unprivileged user ca… | MEDIUM | 5.5 | Jul 4, 2019 |
| CVE-2019-13226 | deepin-clone before 1.1.3 uses a predictable path /tmp/.deepin-clone/mount/<block-dev-basename> in the Helper::temporaryMountDevice() function to temporarily m… | HIGH | 7.0 | Jul 4, 2019 |
Showing 1 to 3 of 3 CVEs