Advisories ยป MGASA-2020-0323

Updated ark packages fix security vulnerability

Publication date: 18 Aug 2020
Modification date: 18 Aug 2020
Type: security
Affected Mageia releases : 7
CVE: CVE-2020-16116

Description

A maliciously crafted archive with "../" in the file paths would install files
anywhere in the user's home directory upon extraction (CVE-2020-16116).
                

References

SRPMS

7/core