Bugzilla – Bug 911814
VUL-1: CVE-2015-0552: gcab: directory traversal flaw
Last modified: 2015-01-22 16:39:05 UTC
CVE-2015-0552 t was found that gcab did not correctly filter leading slashes from paths in CAB files, leading to a directory traversal flaw. References: https://bugzilla.gnome.org/show_bug.cgi?id=742331 https://bug742331.bugzilla-attachments.gnome.org/attachment.cgi?id=293730 (proposed patch) https://bugzilla.redhat.com/show_bug.cgi?id=1179126
openSUSE-SU-2015:0043-1: An update that fixes one vulnerability is now available. Category: security (moderate) Bug References: 911814 CVE References: CVE-2015-0552 Sources used: openSUSE 13.2 (src): gcab-0.4-4.4.1 openSUSE 13.1 (src): gcab-0.4-2.4.1
feel free ti reassign to security team next tiume