[Bug 1175857] VUL-0: CVE-2020-24654: ark: maliciously crafted TAR archive can install files outside the extraction directory
1 Sep
2020
1 Sep
'20
10:23
https://bugzilla.suse.com/show_bug.cgi?id=1175857 https://bugzilla.suse.com/show_bug.cgi?id=1175857#c3 --- Comment #3 from Swamp Workflow Management <swamp@suse.de> --- openSUSE-SU-2020:1310-1: An update that fixes one vulnerability is now available. Category: security (moderate) Bug References: 1175857 CVE References: CVE-2020-24654 JIRA References: Sources used: openSUSE Leap 15.2 (src): ark-20.04.2-lp152.2.6.1 openSUSE Leap 15.1 (src): ark-18.12.3-lp151.2.7.1 openSUSE Backports SLE-15-SP1 (src): ark-18.12.3-bp151.3.6.1 -- You are receiving this mail because: You are on the CC list for the bug.
1570
Age (days ago)
1570
Last active (days ago)
0 comments
1 participants
participants (1)
-
bugzilla_noreply@suse.com