зеркало из https://github.com/golang/vulndb.git
data/reports: add GHSA to GO-2020-0026.yaml
Aliases: CVE-2018-1103, GHSA-w55j-f7vx-6q37 Updates golang/vulndb#26 Change-Id: Ib3fbb9a0a20fe15fec4c78d2d02277f8c95f8901 Reviewed-on: https://go-review.googlesource.com/c/vulndb/+/466137 TryBot-Result: Gopher Robot <gobot@golang.org> Reviewed-by: Tim King <taking@google.com> Auto-Submit: Tatiana Bradley <tatianabradley@google.com> Run-TryBot: Tatiana Bradley <tatianabradley@google.com>
This commit is contained in:
Родитель
e7e5ce5060
Коммит
778e233a1a
|
@ -3,7 +3,8 @@
|
|||
"published": "2021-04-14T20:04:52Z",
|
||||
"modified": "0001-01-01T00:00:00Z",
|
||||
"aliases": [
|
||||
"CVE-2018-1103"
|
||||
"CVE-2018-1103",
|
||||
"GHSA-w55j-f7vx-6q37"
|
||||
],
|
||||
"details": "Due to improper path santization, archives containing relative file paths can cause files to be written (or overwritten) outside of the target directory.",
|
||||
"affected": [
|
||||
|
|
|
@ -19,6 +19,8 @@ description: |
|
|||
published: 2021-04-14T20:04:52Z
|
||||
cves:
|
||||
- CVE-2018-1103
|
||||
ghsas:
|
||||
- GHSA-w55j-f7vx-6q37
|
||||
references:
|
||||
- fix: https://github.com/openshift/source-to-image/commit/f5cbcbc5cc6f8cc2f479a7302443bea407a700cb
|
||||
- web: https://snyk.io/research/zip-slip-vulnerability
|
||||
|
|
Загрузка…
Ссылка в новой задаче