Known vulnerabilities in ark (Alpine package)
Vendor:
Alpine Linux Development Team
Software:
ark (Alpine package)
Software CPE:
cpe:2.3:o:alpine:ark_alpine_package:*:*:*:*:*:alpine_linux:*:*
Website:
https://alpinelinux.org/
Total vulnerabilities:
2
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (2)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU46109 - UNIX Symbolic Link (Symlink) Following CVE-2020-24654 |
CWE-61 | Medium | 20.08.0-r1 | 27.08.2020 |
SB2020082726 SB2020090117 SB2020082815 and 10 more |
||
| #VU32924 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CVE-2020-16116 |
CWE-22 | High | 20.04.3-r1 | 30.07.2020 |
SB2020073016 SB2020080803 SB2020081265 and 8 more |