LWN.net Logo

kdeutils: directory traversal

Package(s):kdeutils CVE #(s):CVE-2011-2725
Created:November 22, 2011 Updated:March 7, 2012
Description: From the Ubuntu advisory:

Tim Brown discovered that Ark did not properly perform input validation when previewing archive files. If a user were tricked into opening a crafted archive file, an attacker could remove files via directory traversal.

Alerts:
Ubuntu USN-1276-1 2011-11-21
openSUSE openSUSE-SU-2012:0322-1 2012-03-06

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds