CVE-2022-37290

Name
CVE-2022-37290
Description
GNOME Nautilus 42.2 allows a NULL pointer dereference and get_basename application crash via a pasted ZIP archive.
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
MISC https://gitlab.gnome.org/GNOME/nautilus/-/issues/2376
MISC https://gitlab.gnome.org/GNOME/nautilus/-/tree/master
MISC https://gitlab.gnome.org/GNOME/nautilus/-/merge_requests/1001

Match rules

CPE URI Source package Min version Max version
cpe:2.3:a:gnome:nautilus:42.2:*:*:*:*:*:*:* nautilus == None == 42.2

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
nautilus 3.16-community 42.2-r0 Rasmus Thomsen <oss@cogitri.dev> possibly vulnerable