Debian alert DSA-6029-1 (ark)
| From: | Moritz Muehlenhoff <jmm@debian.org> | |
| To: | debian-security-announce@lists.debian.org | |
| Subject: | [SECURITY] [DSA 6029-1] ark security update | |
| Date: | Mon, 20 Oct 2025 16:02:05 +0000 | |
| Message-ID: | <aPZc_XNovJFR9zTM@seger.debian.org> |
-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 - ------------------------------------------------------------------------- Debian Security Advisory DSA-6029-1 security@debian.org https://www.debian.org/security/ Moritz Muehlenhoff October 20, 2025 https://www.debian.org/security/faq - ------------------------------------------------------------------------- Package : ark CVE ID : CVE-2024-57966 It was discovered that insecure path handling in the Ark archive utility could result in overwriting a user's files. For the oldstable distribution (bookworm), this problem has been fixed in version 4:22.12.3-1+deb12u1. We recommend that you upgrade your ark packages. For the detailed security status of ark please refer to its security tracker page at: https://security-tracker.debian.org/tracker/ark Further information about Debian Security Advisories, how to apply these updates to your system and frequently asked questions can be found at: https://www.debian.org/security/ Mailing list: debian-security-announce@lists.debian.org -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEtuYvPRKsOElcDakFEMKTtsN8TjYFAmj2WjUACgkQEMKTtsN8 TjagbxAAuoBiUjAb36TelZlSsDhos4p5DixTzSpePHSL42OL/0ZiVi7agpaCP1lD qvVd1/sDIU8PYtlo+pFf3wvO46b2ufzuVAn1H59PSsI6G1aJH+p2E3qVLUse0gRG rQqpwURA7ArAZo0eJU68Yl2dVhjADf3500LrBO5E2QoKoV2T89a93T7Vlkdq4o99 n7DxHqaCFQeDj71XshbUtaA5UUH7WIk72uqh/P3vihGZyZhlh66cYJCN9HB39wtL Tb6bYL4G+1Ho6XfnjvgZ8AoSZi7E4iZBvubupmT1jNOXkg1uaQFC7ab9u0BsbLnw R1jioSR2Shv9R5n0j2/UfBsXO/zT4ew8zhK/Y3IrwLOQhNATIzic6O0JCbq597gB zzrv8yeCWe5ouj2usjKzs9NTjJJ4wlpRNwGfYmmkuBKlaV/g5DtFSGJMJxwxD75/ 1ZU0Oc7oklYXYyHc+gdaCNhIH1I098Y11IyhfurEUgdRaQuX6EaLetWvfIGenK1Q dazeangdUTDT8OsvYICGIfTGWYcddryopLHM/mUGN04drKX3uT5PIb3GPn5IRHD2 aY4K5h9b9JhIx4hVsR10aZ2akqDyXGotFWynt7g6j2nqscXoknLjnq9nnnB4nXhD NhGedi7bSw2oXj96eqGH6o7+KNttjYh2C0PmkgyJcHLNqrK8MBg= =NN+r -----END PGP SIGNATURE-----
