Back to search
CVE-2017-14120
Published: Sep 3, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a directory traversal vulnerability for RAR v2 archives: pathnames of the form ../[filename] are unpacked into the upper directory.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://bugs.debian.org/874059
x_refsource_MISC
http://www.openwall.com/lists/oss-security/2017/08/20/1
x_refsource_MISC
[debian-lts-announce] 20210218 [SECURITY] [DLA 2567-1] unrar-free security update
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now