#VU32924 Path traversal in ark - CVE-2020-16116
Published: July 30, 2020 / Updated: August 14, 2020
ark
KDE.org
Description
The vulnerability allows a remote attacker to perform directory traversal attacks.
The vulnerability exists due to input validation error when processing directory traversal sequences within the archive. A remote attacker can create a specially crafted archive, trick the victim into extracting files from it and overwrite arbitrary files on the system with privileges of the current user.