MGASA-2018-0287

Source
https://advisories.mageia.org/MGASA-2018-0287.html
Import Source
https://advisories.mageia.org/MGASA-2018-0287.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2018-0287
Related
Published
2018-06-17T21:26:22Z
Modified
2018-06-17T21:08:22Z
Summary
Updated freedink-dfarc package fixes security vulnerability
Details

Sylvain Beucler and Dan Walma discovered several directory traversal issues in DFArc (as well as in the RTsoft's Dink Smallwood HD / ProtonSDK version), allowing an attacker to overwrite arbitrary files on the user's system (CVE-2018-0496).

This release fixes it, and brings translation updates.

References
Credits

Affected packages

Mageia:6 / freedink-dfarc

Package

Name
freedink-dfarc
Purl
pkg:rpm/mageia/freedink-dfarc?distro=mageia-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.14-1.mga6

Ecosystem specific

{
    "section": "core"
}