/
DirectorySecurity Advisories
Sign In
Security Advisories

CGA-2w3w-vxpc-rv62

Published

Last updated

https://images.chainguard.dev/security/CGA-2w3w-vxpc-rv62
Package

croc

Latest Update
Under investigation
Aliases
  • CVE-2023-43616
  • GHSA-8c8w-f7wp-2jr2

Severity

5.5

Medium

CVSS V3

Summary

Sender can cause a receiver to overwrite files during ZIP extraction in Croc

Description

An issue was discovered in Croc before 9.6.16. A sender can cause a receiver to overwrite files during ZIP extraction.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images