A security issue exists in Ark where a maliciously crafted archive containing file paths beginning with "/" allows files to be extracted to locations outside the intended directory. References: . MGASA-2025-0061 - Updated ark packages fix security vulnerability Publication date: 13 Feb 2025 URL: https://advisories.mageia.org/MGASA-2025-0061.html Type: security Affected Mageia releases: 9 CVE: CVE-2024-57966 A security issue exists in Ark where a maliciously crafted archive containing file paths beginning with "/" allows files to be extracted to locations outside the intended directory. References: - https://bugs.mageia.org/show_bug.cgi?id=34013 - https://kde.org/info/security/advisory-20250207-1.txt - https://www.cve.org/CVERecord?id=CVE-2024-57966 SRPMS: - 9/core/ark-23.04.3-1.1.mga9 . Investigate the Mageia security notice MGASA-2025-0061 detailing a vulnerability in ark that permits unauthorized access for file extraction.. Mageia Ark Security Advisory, Path Extraction Issue, Malicious Archive Exploit. . Severity: Critical. LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.