Skip to main content
← Back to Advisories

KDE Ark Directory Traversal Command Execution

MEDIUM CVE-2019-14743
Dominik Penner's profile picture

Dominik Penner @zer0pwn

DESCRIPTION

A vulnerability in KDE Ark allows directory traversal and command execution through malicious archive files.

DETAILS

KDE Ark contains a vulnerability that allows directory traversal and command execution through specially crafted archive files. An attacker could create a malicious archive that, when extracted, could traverse directories and execute arbitrary commands.

AFFECTING

  • KDE Ark • 20.08.0