Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2020-1173

Опубликовано: 06 апр. 2020
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2020-1173: okular security update (MODERATE)

[4.10.5-8]

  • Fix path traversal issue when extracting an .okular file Resolves: bz#1634726

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

okular

4.10.5-8.el7

okular-devel

4.10.5-8.el7

okular-libs

4.10.5-8.el7

okular-part

4.10.5-8.el7

Oracle Linux x86_64

okular

4.10.5-8.el7

okular-devel

4.10.5-8.el7

okular-libs

4.10.5-8.el7

okular-part

4.10.5-8.el7

Связанные CVE

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 7 лет назад

okular version 18.08 and earlier contains a Directory Traversal vulnerability in function "unpackDocumentArchive(...)" in "core/document.cpp" that can result in Arbitrary file creation on the user workstation. This attack appear to be exploitable via he victim must open a specially crafted Okular archive. This issue appears to have been corrected in version 18.08.1

CVSS3: 5.5
redhat
больше 7 лет назад

okular version 18.08 and earlier contains a Directory Traversal vulnerability in function "unpackDocumentArchive(...)" in "core/document.cpp" that can result in Arbitrary file creation on the user workstation. This attack appear to be exploitable via he victim must open a specially crafted Okular archive. This issue appears to have been corrected in version 18.08.1

CVSS3: 5.5
nvd
больше 7 лет назад

okular version 18.08 and earlier contains a Directory Traversal vulnerability in function "unpackDocumentArchive(...)" in "core/document.cpp" that can result in Arbitrary file creation on the user workstation. This attack appear to be exploitable via he victim must open a specially crafted Okular archive. This issue appears to have been corrected in version 18.08.1

CVSS3: 5.5
debian
больше 7 лет назад

okular version 18.08 and earlier contains a Directory Traversal vulner ...

suse-cvrf
больше 7 лет назад

Security update for okular