Количество 18
Количество 18
openSUSE-SU-2020:0825-1
Security update for file-roller
SUSE-SU-2020:1557-1
Security update for file-roller
RLSA-2020:4820
Moderate: file-roller security update
ELSA-2020-4820
ELSA-2020-4820: file-roller security update (MODERATE)
CVE-2020-11736
fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the intended extraction location.
CVE-2020-11736
fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the intended extraction location.
CVE-2020-11736
fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the intended extraction location.
CVE-2020-11736
fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Dir ...
CVE-2019-16680
An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction.
CVE-2019-16680
An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction.
CVE-2019-16680
An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction.
CVE-2019-16680
An issue was discovered in GNOME file-roller before 3.29.91. It allows ...
SUSE-SU-2020:1505-1
Security update for file-roller
SUSE-SU-2020:1088-1
Security update for file-roller
GHSA-jj2q-v22w-qp64
fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the intended extraction location.
GHSA-63pg-53ch-332g
An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction.
BDU:2021-01340
Уязвимость компонента fr-archive-libarchive.c программы-архиватора File Roller, позволяющая нарушителю оказать воздействие на целостность и доступность защищаемой информации
BDU:2019-04774
Уязвимость функции sanitize_filename из src/glib-utils.c программы-архиватора File Roller, позволяющая нарушителю вызвать отказ в обслуживании
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
openSUSE-SU-2020:0825-1 Security update for file-roller | больше 5 лет назад | |||
SUSE-SU-2020:1557-1 Security update for file-roller | больше 5 лет назад | |||
RLSA-2020:4820 Moderate: file-roller security update | около 5 лет назад | |||
ELSA-2020-4820 ELSA-2020-4820: file-roller security update (MODERATE) | около 5 лет назад | |||
CVE-2020-11736 fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the intended extraction location. | CVSS3: 3.9 | 0% Низкий | больше 5 лет назад | |
CVE-2020-11736 fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the intended extraction location. | CVSS3: 3.9 | 0% Низкий | больше 5 лет назад | |
CVE-2020-11736 fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the intended extraction location. | CVSS3: 3.9 | 0% Низкий | больше 5 лет назад | |
CVE-2020-11736 fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Dir ... | CVSS3: 3.9 | 0% Низкий | больше 5 лет назад | |
CVE-2019-16680 An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction. | CVSS3: 4.3 | 2% Низкий | около 6 лет назад | |
CVE-2019-16680 An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction. | CVSS3: 4.3 | 2% Низкий | почти 8 лет назад | |
CVE-2019-16680 An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction. | CVSS3: 4.3 | 2% Низкий | около 6 лет назад | |
CVE-2019-16680 An issue was discovered in GNOME file-roller before 3.29.91. It allows ... | CVSS3: 4.3 | 2% Низкий | около 6 лет назад | |
SUSE-SU-2020:1505-1 Security update for file-roller | 0% Низкий | больше 5 лет назад | ||
SUSE-SU-2020:1088-1 Security update for file-roller | 2% Низкий | больше 5 лет назад | ||
GHSA-jj2q-v22w-qp64 fr-archive-libarchive.c in GNOME file-roller through 3.36.1 allows Directory Traversal during extraction because it lacks a check of whether a file's parent is a symlink to a directory outside of the intended extraction location. | CVSS3: 3.9 | 0% Низкий | больше 3 лет назад | |
GHSA-63pg-53ch-332g An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction. | CVSS3: 4.3 | 2% Низкий | больше 3 лет назад | |
BDU:2021-01340 Уязвимость компонента fr-archive-libarchive.c программы-архиватора File Roller, позволяющая нарушителю оказать воздействие на целостность и доступность защищаемой информации | CVSS3: 3.9 | 0% Низкий | больше 5 лет назад | |
BDU:2019-04774 Уязвимость функции sanitize_filename из src/glib-utils.c программы-архиватора File Roller, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 5.3 | 2% Низкий | почти 8 лет назад |
Уязвимостей на страницу