Revision Date: | 2013-04-29 | Version: | 11 |
Title: | Multiple directory traversal vulnerabilities in LHA 1.14 allow remote attackers or local users to create arbitrary files via an LHA archive containing filenames with (1) .. sequences or (2) absolute pathnames with double leading slashes ("//absolute/path"). |
Description: | Multiple directory traversal vulnerabilities in LHA 1.14 allow remote attackers or local users to create arbitrary files via an LHA archive containing filenames with (1) .. sequences or (2) absolute pathnames with double leading slashes ("//absolute/path"). |
Family: | unix | Class: | vulnerability |
Status: | ACCEPTED | Reference(s): | CVE-2004-0235
|
Platform(s): | CentOS Linux 3 Red Hat Enterprise Linux 3
| Product(s): | |
Definition Synopsis |
RHEL3 or CentOS3 The operating system installed on the system is Red Hat Enterprise Linux 3
OR CentOS Linux 3.x
AND lha is earlier than 0:1.14i-10.2
|