Unity8
by Ubuntu
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2016-1573 | Hig | 0.51 | 7.8 | 0.00 | Apr 22, 2019 | Versions of Unity8 before 8.11+16.04.20160122-0ubuntu1 file plugins/Dash/CardCreator.js will execute any code found in place of a fallback image supplied by a scope. | ||
| CVE-2015-7946 | Hig | 0.47 | 7.3 | 0.00 | May 7, 2020 | Information Exposure vulnerability in Unity8 as used on the Ubuntu phone and possibly also in Unity8 shipped elsewhere. This allows an attacker to enable the MTP service by opening the emergency dialer. Fixed in 8.11+16.04.20160111.1-0ubuntu1 and 8.11+15.04.20160122-0ubuntu1. | ||
| CVE-2016-1584 | Low | 0.10 | 1.6 | 0.01 | Apr 22, 2019 | In all versions of Unity8 a running but not active application on a large-screen device could talk with Maliit and consume keyboard input. |
- risk 0.51cvss 7.8epss 0.00
Versions of Unity8 before 8.11+16.04.20160122-0ubuntu1 file plugins/Dash/CardCreator.js will execute any code found in place of a fallback image supplied by a scope.
- risk 0.47cvss 7.3epss 0.00
Information Exposure vulnerability in Unity8 as used on the Ubuntu phone and possibly also in Unity8 shipped elsewhere. This allows an attacker to enable the MTP service by opening the emergency dialer. Fixed in 8.11+16.04.20160111.1-0ubuntu1 and 8.11+15.04.20160122-0ubuntu1.
- risk 0.10cvss 1.6epss 0.01
In all versions of Unity8 a running but not active application on a large-screen device could talk with Maliit and consume keyboard input.