Описание
ELSA-2020-1173: okular security update (MODERATE)
[4.10.5-8]
- Fix path traversal issue when extracting an .okular file Resolves: bz#1634726
Обновленные пакеты
Oracle Linux 7
Oracle Linux aarch64
okular
4.10.5-8.el7
okular-devel
4.10.5-8.el7
okular-libs
4.10.5-8.el7
okular-part
4.10.5-8.el7
Oracle Linux x86_64
okular
4.10.5-8.el7
okular-devel
4.10.5-8.el7
okular-libs
4.10.5-8.el7
okular-part
4.10.5-8.el7
Связанные CVE
Связанные уязвимости
okular version 18.08 and earlier contains a Directory Traversal vulnerability in function "unpackDocumentArchive(...)" in "core/document.cpp" that can result in Arbitrary file creation on the user workstation. This attack appear to be exploitable via he victim must open a specially crafted Okular archive. This issue appears to have been corrected in version 18.08.1
okular version 18.08 and earlier contains a Directory Traversal vulnerability in function "unpackDocumentArchive(...)" in "core/document.cpp" that can result in Arbitrary file creation on the user workstation. This attack appear to be exploitable via he victim must open a specially crafted Okular archive. This issue appears to have been corrected in version 18.08.1
okular version 18.08 and earlier contains a Directory Traversal vulnerability in function "unpackDocumentArchive(...)" in "core/document.cpp" that can result in Arbitrary file creation on the user workstation. This attack appear to be exploitable via he victim must open a specially crafted Okular archive. This issue appears to have been corrected in version 18.08.1
okular version 18.08 and earlier contains a Directory Traversal vulner ...