CVE-2019-14452HIGHCVSS 7.5fixed in sigil 0.9.16+dfsg-1 (bookworm)2019
CVE-2019-14452 [HIGH] CVE-2019-14452: sigil - Sigil before 0.9.16 is vulnerable to a directory traversal, allowing attackers t...
Sigil before 0.9.16 is vulnerable to a directory traversal, allowing attackers to write arbitrary files via a ../ (dot dot slash) in a ZIP archive entry that is mishandled during extraction.
Scope: local
bookworm: resolved (fixed in 0.9.16+dfsg-1)
bullseye: resolved (fixed in 0.9.16+dfsg-1)
forky: resolved (fixed in 0.9.16+dfsg-1)
sid: resolved (fixed in 0.9.16+dfsg-1
debian