VDB

GCVE-110-MAGEIA-2020-160

GCVE-110-MAGEIA-2020-160
Advisory Published
Vulnetix · Advisory published April 5, 2020
Updated python-ntlk package fixes security vulnerability: A vulnerability was found in NLTK Downloader before 3.4.5 is vulnerable to a directory traversal, allowing attackers to write arbitrary files via a ../ in an NLTK package (ZIP archive) that is mishandled during extraction (CVE-2019-14751).

Affected Products

VendorProductVersionsPlatforms
Mageiapython-nltk0 (affected), 3.4.5-1.1.mga7 (unaffected), 3.4.5-1.1.mga7 (unaffected), 0 (affected)
Mageiaisodumper0 (affected), 1.20-1.mga7 (unaffected)
Mageiapython-gettext0 (affected), 4.0-3.mga7 (unaffected)
Mageiapython-manatools0 (affected), 0.0.3-1.mga7 (unaffected)

Browse GCVE Records

74,496 records in the GCVE database · Updated July 23, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›