CVE-2021-32840

CVE-2021-32840

SharpZipLib (or #ziplib) is a Zip, GZip, Tar and BZip2 library. Prior to version 1.3.3, a TAR file entry `../evil.txt` may be extracted in the parent directory of `destFolder`. This leads to arbitrary file write that may lead to code execution. The vulnerability was patched in version 1.3.3.

Source: CVE-2021-32840

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다