CVE-2019-16680 - CERT CVE
ID CVE-2019-16680
Sažetak An issue was discovered in GNOME file-roller before 3.29.91. It allows a single ./../ path traversal via a filename contained in a TAR archive, possibly overwriting a file during extraction.
Reference
CVSS
Base: 2.6
Impact: 2.9
Exploitability:4.9
Pristup
VektorSloženostAutentikacija
NETWORK HIGH NONE
Impact
PovjerljivostCjelovitostDostupnost
NONE PARTIAL NONE
CVSS vektor AV:N/AC:H/Au:N/C:N/I:P/A:N
Zadnje važnije ažuriranje 20-12-2019 - 17:23
Objavljeno 21-09-2019 - 21:15