Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-0552

Опубликовано: 15 янв. 2015
Источник: ubuntu
Приоритет: medium
CVSS2: 6.4

Описание

Directory traversal vulnerability in the gcab_folder_extract function in libgcab/gcab-folder.c in gcab 0.4 allows remote attackers to write to arbitrary files via crafted path in a CAB file, as demonstrated by "\tmp\moo."

РелизСтатусПримечание
devel

not-affected

0.4-2
esm-infra-legacy/trusty

DNE

lucid

DNE

precise

DNE

trusty

DNE

trusty/esm

DNE

upstream

released

0.4-2
utopic

DNE

Показывать по

Ссылки на источники

6.4 Medium

CVSS2

Связанные уязвимости

nvd
около 11 лет назад

Directory traversal vulnerability in the gcab_folder_extract function in libgcab/gcab-folder.c in gcab 0.4 allows remote attackers to write to arbitrary files via crafted path in a CAB file, as demonstrated by "\tmp\moo."

debian
около 11 лет назад

Directory traversal vulnerability in the gcab_folder_extract function ...

github
больше 3 лет назад

Directory traversal vulnerability in the gcab_folder_extract function in libgcab/gcab-folder.c in gcab 0.4 allows remote attackers to write to arbitrary files via crafted path in a CAB file, as demonstrated by "\tmp\moo."

6.4 Medium

CVSS2