PT-2017-12786 · Unity · Unity Editor
Publicado
2017-08-18
·
Atualizado
2017-09-13
·
CVE-2017-12939
CVSS v3.1
9.8
Crítica
| Vetor | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Unity Editor versions prior to 5.3.8p2
Unity Editor versions 5.4.x prior to 5.4.5p5
Unity Editor versions 5.5.x prior to 5.5.4p3
Unity Editor versions 5.6.x prior to 5.6.3p1
Unity Editor versions 2017.x prior to 2017.1.0p4
Description
A Remote Code Execution issue was identified in Windows versions of Unity Editor.
Recommendations
For Unity Editor versions prior to 5.3.8p2, update to version 5.3.8p2 or later.
For Unity Editor versions 5.4.x prior to 5.4.5p5, update to version 5.4.5p5 or later.
For Unity Editor versions 5.5.x prior to 5.5.4p3, update to version 5.5.4p3 or later.
For Unity Editor versions 5.6.x prior to 5.6.3p1, update to version 5.6.3p1 or later.
For Unity Editor versions 2017.x prior to 2017.1.0p4, update to version 2017.1.0p4 or later.
Correção
RCE
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Unity Editor