VDB

GCVE-110-MAGEIA-2020-218

GCVE-110-MAGEIA-2020-218
Advisory Published
Vulnetix · Advisory published May 24, 2020
Updated the file-roller package in order to fix a security vulnerability: fr-archive-libarchive.c: File Roller lacks a check of whether a file's parent is a symlink to a directory outside of the intended extraction location. Thus, directory traversal is not prevented (CVE-2020-11736).

Affected Products

VendorProductVersionsPlatforms
Mageiafile-roller0 (affected), 3.32.1-2.1.mga7 (unaffected), 0 (affected), 3.32.1-2.1.mga7 (unaffected)
Mageiaxfsprogs0 (affected), 5.9.0-1.mga7 (unaffected)

Browse GCVE Records

75,676 records in the GCVE database · Updated July 31, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›