Lucene search

K
osvGoogleOSV:USN-4733-1
HistoryFeb 11, 2021 - 12:46 p.m.

gnome-autoar vulnerability

2021-02-1112:46:24
Google
osv.dev
10

5.6 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

21.9%

Yiğit Can Yılmaz discovered that GNOME Autoar could extract files outside
of the intended directory. If a user were tricked into extracting a
specially crafted archive, a remote attacker could create files in
arbitrary locations, possibly leading to code execution.