oss-sec mailing list archives

Re: CVE Request: Ark path traversal


From: Josh Bressers <bressers () redhat com>
Date: Tue, 26 Jul 2011 15:58:41 -0400 (EDT)



----- Original Message -----
Hello,

Ark contains a path traversal vulnerability allowing a
maliciously-crafted zip file to allow for an arbitrary file to be
displayed and, if the user has appropriate credentials, removed.

Can we please get a CVE for this?


Do you have a URL or some other public information about this flaw?

Thanks.

-- 
    JB


Current thread: