Advisories ยป MGASA-2025-0061

Updated ark packages fix security vulnerability

Publication date: 13 Feb 2025
Modification date: 13 Feb 2025
Type: security
Affected Mageia releases : 9
CVE: CVE-2024-57966

Description

A security issue exists in Ark where a maliciously crafted archive containing
file paths beginning with "/" allows files to be extracted to locations
outside the intended directory.
                

References

SRPMS

9/core