Lack of data validation In archive
Description
Filename spoofing in archive An issue in Archive v3.3.7 allows attackers to spoof zip filenames which can lead to inconsistent filename parsing.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component | Affected version | Patched versions |
|---|---|---|---|
pub | 3.3.8 |
Aliases
1. 2. 3. 4.
References
1. 2. 3. 4. 5.