[Bug 1203463] VUL-0: CVE-2022-42725: warpinator: upload paths can escape destination upload folder leading to remote code execution
19 Jan
2023
19 Jan
'23
05:34
https://bugzilla.suse.com/show_bug.cgi?id=1203463 https://bugzilla.suse.com/show_bug.cgi?id=1203463#c12 --- Comment #12 from Atri Bhattacharya <badshah400@gmail.com> --- (In reply to Matthias Gerstner from comment #11)
(In reply to badshah400@gmail.com from comment #10)
Would be grateful if you could re-evaluate the package and see if the security issues persist, thanks in advance.
I will have a look but it will take a couple of days before I will have time.
Thanks, no rush. In the meanwhile, I will accept the package into the develproject (obs://network) and let it stay there (will decide on making sr to Factory depending on your review later). -- You are receiving this mail because: You are on the CC list for the bug.
702
Age (days ago)
702
Last active (days ago)
0 comments
1 participants
participants (1)
-
bugzilla_noreply@suse.com