file-roller (3.10.2.1-0ubuntu4.2) trusty-security; urgency=medium
* SECURITY UPDATE: Path traversal flaw allows arbitrary file deletion via
malicious archive (LP: #1171236)
- debian/patches/CVE-2016-7162.patch: Do not follow symlinks when deleting
a folder recursively. Based on upstream patch.
- CVE-2016-7162
Date: 2016-09-08 14:41:31.523873+00:00
Changed-By: Tyler Hicks <[email protected]>
Signed-By: Ubuntu Archive Robot
<[email protected]>
https://launchpad.net/ubuntu/+source/file-roller/3.10.2.1-0ubuntu4.2
Sorry, changesfile not available.
--
Trusty-changes mailing list
[email protected]
Modify settings or unsubscribe at:
https://lists.ubuntu.com/mailman/listinfo/trusty-changes