Описание
In kerfuffle/jobs.cpp in KDE Ark before 20.08.0, a crafted archive can install files outside the extraction directory via ../ directory traversal.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 4:17.12.3-0ubuntu1.1 |
| devel | not-affected | 4:20.04.3-1 |
| esm-apps/bionic | released | 4:17.12.3-0ubuntu1.1 |
| esm-apps/focal | released | 4:19.12.3-0ubuntu1.1 |
| esm-apps/jammy | not-affected | 4:20.04.3-1 |
| esm-apps/noble | not-affected | 4:20.04.3-1 |
| esm-apps/xenial | needed | |
| esm-infra-legacy/trusty | DNE | |
| focal | released | 4:19.12.3-0ubuntu1.1 |
| groovy | not-affected | 4:20.04.3-1 |
Показывать по
10
Ссылки на источники
4.3 Medium
CVSS2
3.3 Low
CVSS3
Связанные уязвимости
CVSS3: 3.3
redhat
больше 5 лет назад
In kerfuffle/jobs.cpp in KDE Ark before 20.08.0, a crafted archive can install files outside the extraction directory via ../ directory traversal.
CVSS3: 3.3
nvd
больше 5 лет назад
In kerfuffle/jobs.cpp in KDE Ark before 20.08.0, a crafted archive can install files outside the extraction directory via ../ directory traversal.
CVSS3: 3.3
debian
больше 5 лет назад
In kerfuffle/jobs.cpp in KDE Ark before 20.08.0, a crafted archive can ...
4.3 Medium
CVSS2
3.3 Low
CVSS3