In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade RHEL:8 gvfs-devel to version 0:1.36.2-8.el8 or higher.
This issue was patched in RHSA-2020:1766.
Note: Versions mentioned in the description apply only to the upstream gvfs-devel package and not the gvfs-devel package as distributed by RHEL.
See How to fix? for RHEL:8 relevant fixed versions and status.
An issue was discovered in GNOME gvfs 1.29.4 through 1.41.2. daemon/gvfsbackendadmin.c mishandles a file's user and group ownership during move (and copy with G_FILE_COPY_ALL_METADATA) operations from admin:// to file:// URIs, because root privileges are unavailable.