Improper input validation in Oracle Outside In Technology - CVE-2022-48579
Published: April 17, 2024
Vulnerability details
The vulnerability allows a local non-authenticated attacker to gain access to sensitive information.
The vulnerability exists due to improper input validation within the Outside In Core (unrar) component in Oracle Outside In Technology. A local non-authenticated attacker can exploit this vulnerability to gain access to sensitive information.
Affected software
Ubuntu
libunrar5 (Ubuntu package)
unrar (Ubuntu package)
How to mitigate CVE-2022-48579
unrar (Ubuntu package) - addressed in versions 1:5.6.6-2ubuntu0.1, 1:6.1.5-1ubuntu0.1