USN-4733-1

Advisory lineage Upstream: 2 Downstream: 0
Published: 11 Feb 2021, 12:46
Last modified:04 Feb 2026, 03:59

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

11 Feb 2021, 12:46
Published
Vulnerability first disclosed
04 Feb 2026, 03:59
Last Modified
Vulnerability information updated

Description

gnome-autoar vulnerability Yiğit Can Yılmaz discovered that GNOME Autoar could extract files outside of the intended directory. If a user were tricked into extracting a specially crafted archive, a remote attacker could create files in arbitrary locations, possibly leading to code execution.

Affected Systems

  • ubuntugnome-autoar

    < 0.2.3-1ubuntu0.1 | < 0.2.3-2ubuntu0.1

References (2)