VYPR

Partition Manager

by KDE

CVEs (2)

  • CVE-2021-33204May 19, 2021
    risk 0.00cvss epss 0.02

    In the pg_partman (aka PG Partition Manager) extension before 4.5.1 for PostgreSQL, arbitrary code execution can be achieved via SECURITY DEFINER functions because an explicit search_path is not set.

  • CVE-2020-27187Oct 26, 2020
    risk 0.00cvss epss 0.00

    An issue was discovered in KDE Partition Manager 4.1.0 before 4.2.0. The kpmcore_externalcommand helper contains a logic flaw in which the service invoking D-Bus is not properly checked. An attacker on the local machine can replace /etc/fstab, and execute mount and other…