[Bug 1893465] Re: KDE Project Security Advisory: Ark: maliciously crafted TAR archive with symlinks can install files outside the extraction directory.

Rik Mills 1893465 at bugs.launchpad.net
Fri Aug 28 20:15:03 UTC 2020


For groovy, ark 20.08.1 tar with the fix rolled in will not be released
until next week. Once I get access to the tar, I will upload to groovy.

** Also affects: ark (Ubuntu Groovy)
   Importance: Undecided
     Assignee: Eduardo Barretto (ebarretto)
       Status: New

** Also affects: ark (Ubuntu Focal)
   Importance: Undecided
       Status: New

** Also affects: ark (Ubuntu Bionic)
   Importance: Undecided
       Status: New

-- 
You received this bug notification because you are a member of Kubuntu
Bugs, which is subscribed to ark in Ubuntu.
https://bugs.launchpad.net/bugs/1893465

Title:
  KDE Project Security Advisory: Ark: maliciously crafted TAR archive
  with symlinks can install files outside the extraction directory.

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ark/+bug/1893465/+subscriptions




More information about the kubuntu-bugs mailing list