← back
CVE-2020-16121

PackageKit error messages leak presence and mimetype of files to unprivileged users

CVSS 3.3 LOWEPSS 0.5%CWE-209
PackageKit provided detailed error messages to unprivileged callers that exposed information about file presence and mimetype of files that the user would be unable to determine on its own.
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Affected products
PackageKit · PackageKit

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →