[Desktop-packages] [Bug 1901240] Re: Ubuntu GNOME Path Traversal

2021-02-11 Thread Launchpad Bug Tracker
This bug was fixed in the package gnome-autoar - 0.2.3-2ubuntu0.1 --- gnome-autoar (0.2.3-2ubuntu0.1) focal-security; urgency=medium * SECURITY UPDATE: directory traversal issue (LP: #1901240) - debian/patches/CVE-2020-36241.patch: do not extract files outside the

[Desktop-packages] [Bug 1901240] Re: Ubuntu GNOME Path Traversal

2021-02-11 Thread Launchpad Bug Tracker
This bug was fixed in the package gnome-autoar - 0.2.4-2ubuntu0.1 --- gnome-autoar (0.2.4-2ubuntu0.1) groovy-security; urgency=medium * SECURITY UPDATE: directory traversal issue (LP: #1901240) - debian/patches/CVE-2020-36241.patch: do not extract files outside the

[Desktop-packages] [Bug 1901240] Re: Ubuntu GNOME Path Traversal

2021-02-11 Thread Launchpad Bug Tracker
This bug was fixed in the package gnome-autoar - 0.2.3-1ubuntu0.1 --- gnome-autoar (0.2.3-1ubuntu0.1) bionic-security; urgency=medium * SECURITY UPDATE: directory traversal issue (LP: #1901240) - debian/patches/CVE-2020-36241.patch: do not extract files outside the

[Desktop-packages] [Bug 1901240] Re: Ubuntu GNOME Path Traversal

2021-02-09 Thread Steve Beattie
Upstream issue: https://gitlab.gnome.org/GNOME/gnome-autoar/-/issues/7 and associated fix https://gitlab.gnome.org/GNOME/gnome- autoar/-/commit/adb067e645732fdbe7103516e506d09eb6a54429 Given that this is public upstream, I'm going to open this issue ap as well. ** Bug watch added: