oss-sec mailing list archives
Re: CVE Request: gcab: directory traversal
From: cve-assign () mitre org
Date: Mon, 5 Jan 2015 11:27:51 -0500 (EST)
Jakub Wilk reported a directory traversal vulnerability due to cab not filtering leading slashes from paths in CAB files. Debian bug: https://bugs.debian.org/774580 Upstream bugreport: https://bugzilla.gnome.org/show_bug.cgi?id=742331 Could you assign as CVE for this issue? Regards, Salvatore
Use CVE-2015-0552. --- CVE assignment team, MITRE CVE Numbering Authority M/S M300 202 Burlington Road, Bedford, MA 01730 USA [ PGP key available through http://cve.mitre.org/cve/request_id.html ]
Current thread:
- CVE Request: gcab: directory traversal Salvatore Bonaccorso (Jan 04)
- Re: CVE Request: gcab: directory traversal cve-assign (Jan 05)