Gentoo: GLSA-200506-03: Dzip: Directory traversal vulnerability
Summary
Gentoo Linux Security Advisory GLSA 200506-03
https://security.gentoo.org/
Severity: Normal
Title: Dzip: Directory traversal vulnerability
Date: June 06, 2005
Bugs: #93079
ID: 200506-03
Synopsis
=======
Dzip is vulnerable to a directory traversal attack.
Background
=========
Dzip is a compressor and uncompressor especially made for demo
recordings of id's Quake.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 games-util/dzip < 2.9-r1 >= 2.9-r1
==========
Dzip is vulnerable to a directory traversal attack when extracting
archives.
Impact
=====
An attacker could exploit this vulnerability by creating a specially
crafted archive to extract files to ar...
Resolution
References
Availability
Concerns
Background