shield Security update for perl-archive-zip
slessp4-perl-Archive-Zip-13734


This update for perl-Archive-Zip fixes the following security issue: - CVE-2018-10860: Prevent directory traversal caused by not properly sanitizing paths while extracting zip files. An attacker able to provide a specially crafted archive for processing could have used this flaw to write or overwrite arbitrary files in the context of the perl interpreter (bsc#1099497).

  • Release Date
    Aug 16 2018
  • References
    Bugzilla: 1099497
    CVEs: CVE-2018-10860
  • Type
    security
  • Severity
    moderate

cloud_download Downloads

SUSE Linux Enterprise Server 11.4 i586
SUSE Linux Enterprise Server 11.4 ia64
SUSE Linux Enterprise Server for SAP Applications 11.4 ppc64
SUSE Linux Enterprise Server 11.4 s390x
SUSE Linux Enterprise Server for SAP All-in-One 11.4 x86_64