CVE-2016-1000033: Gnome Shotwell

Low severity, CVSS 3.7. EPSS: 0.9% chance of exploitation in the next 30 days.

Shotwell version 0.22.0 (and possibly other versions) is vulnerable to a TLS/SSL certification validation flaw resulting in a potential for man in the middle attacks.

Affected products

  • Gnome Shotwell: version 0.22.0 only
  • Red Hat Enterprise Linux: version 7.0 only

Published 2016-10-25. Last modified 2026-06-17.