Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-63pg-53ch-332g

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.3

Описание

An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction.

An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction.

EPSS

Процентиль: 82%
0.01789
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 4.3
ubuntu
около 6 лет назад

An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction.

CVSS3: 4.3
redhat
почти 8 лет назад

An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction.

CVSS3: 4.3
nvd
около 6 лет назад

An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction.

CVSS3: 4.3
debian
около 6 лет назад

An issue was discovered in GNOME file-roller before 3.29.91. It allows ...

suse-cvrf
больше 5 лет назад

Security update for file-roller

EPSS

Процентиль: 82%
0.01789
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-22