Vulnerability Bulletins

DSA-4300 libarchive-zip-perl - security update

   
Affected software Debian
 
It was discovered that Archive::Zip, a perl module for manipulation ofZIP archives, is prone to a directory traversal vulnerability. Anattacker able to provide a specially crafted archive for processing cantake advantage of this flaw to overwrite arbitrary files during archiveextraction.

More info:

https://www.debian.org/security/2018/dsa-4300