Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2018-10860
Description:perl-archive-zip is vulnerable to a directory traversal in Archive::Zip. It was found that the Archive::Zip module did not properly sanitize paths while extracting zip files. An attacker able to provide a specially crafted archive for processing could use this flaw to write or overwrite arbitrary files in the context of the perl interpreter.
Test IDs: 1.3.6.1.4.1.25623.1.1.4.2018.2388.1   1.3.6.1.4.1.25623.1.1.4.2018.2385.1   1.3.6.1.4.1.25623.1.0.704300   1.3.6.1.4.1.25623.1.0.843668   1.3.6.1.4.1.25623.1.1.12.2018.3703.2   1.3.6.1.4.1.25623.1.0.891440   1.3.6.1.4.1.25623.1.0.874834   1.3.6.1.4.1.25623.1.1.4.2018.2386.1   1.3.6.1.4.1.25623.1.1.10.2018.0311   1.3.6.1.4.1.25623.1.0.851982   1.3.6.1.4.1.25623.1.0.874833  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2018-10860
BugTraq ID: 104580
http://www.securityfocus.com/bid/104580
Debian Security Information: DSA-4300 (Google Search)
https://www.debian.org/security/2018/dsa-4300
https://lists.debian.org/debian-lts-announce/2018/07/msg00032.html
https://usn.ubuntu.com/3703-1/
https://usn.ubuntu.com/3703-2/




© 1998-2025 E-Soft Inc. All rights reserved.