AVG-2328 log

Package squashfs-tools
Status Fixed
Severity Medium
Type directory traversal
Affected 4.4_git.1-1
Fixed 4.5-1
Current 4.6.1-1 [extra]
Ticket None
Created Fri Aug 27 17:18:11 2021
Issue Severity Remote Type Description
CVE-2021-40153 Medium Yes Directory traversal
squashfs_opendir in unsquash-1.c in Squashfs-Tools before version 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create...