Directory traversal vulnerability in KArchive before 5.24, as used in KDE Frameworks, allows remote attackers to write to arbitrary files via a ../ (dot dot slash) in a filename in an archive file, related to KNewsstuff downloads.
{ "availability": "No subscription required", "binaries": [ { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "kdelibs-bin" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "kdelibs5-data" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "kdelibs5-dev" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "kdelibs5-plugins" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "kdoctools" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkcmutils4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkde3support4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkdeclarative5" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkdecore5" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkdesu5" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkdeui5" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkdewebkit5" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkdnssd4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkemoticons4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkfile4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkhtml5" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkidletime4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkimproxy4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkio5" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkjsapi4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkjsembed4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkmediaplayer4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libknewstuff2-4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libknewstuff3-4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libknotifyconfig4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkntlm4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkparts4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkprintutils4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkpty4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkrosscore4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkrossui4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libktexteditor4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkunitconversion4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libkutils4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libnepomuk4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libnepomukquery4a" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libnepomukutils4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libplasma3" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libsolid4" }, { "binary_version": "4:4.13.3-0ubuntu0.3", "binary_name": "libthreadweaver4" } ] }
{ "availability": "No subscription required", "binaries": [ { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "kdelibs-bin" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "kdelibs5-data" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "kdelibs5-dev" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "kdelibs5-plugins" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "kdoctools" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkcmutils4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkde3support4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkdeclarative5" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkdecore5" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkdesu5" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkdeui5" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkdewebkit5" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkdnssd4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkemoticons4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkfile4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkhtml5" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkidletime4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkimproxy4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkio5" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkjsapi4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkjsembed4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkmediaplayer4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libknewstuff2-4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libknewstuff3-4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libknotifyconfig4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkntlm4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkparts4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkprintutils4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkpty4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkrosscore4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkrossui4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libktexteditor4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkunitconversion4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libkutils4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libplasma3" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libsolid4" }, { "binary_version": "4:4.14.16-0ubuntu3.3", "binary_name": "libthreadweaver4" } ] }