autoar-extractor.c in GNOME gnome-autoar before 0.3.1, as used by GNOME Shell, Nautilus, and other software, allows Directory Traversal during extraction because it lacks a check of whether a files parent is a symlink in certain complex situations. NOTE: this issue exists because of an incomplete fix for CVE-2020-36241.
The product attempts to access a file based on the filename, but it does not properly prevent that filename from identifying a link or shortcut that resolves to an unintended resource.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gnome-autoar | Gnome | * | 0.3.1 (excluding) |
Red Hat Enterprise Linux 8 | RedHat | gnome-autoar-0:0.2.3-2.el8 | * |
Gnome-autoar | Ubuntu | bionic | * |
Gnome-autoar | Ubuntu | focal | * |
Gnome-autoar | Ubuntu | groovy | * |
Gnome-autoar | Ubuntu | trusty | * |
Gnome-autoar | Ubuntu | upstream | * |