A malicious source package could write files outside the unpack directory. (CVE-2022-1664)
{ "section": "core" }