Vulnerability nyob rau hauv KDE Ark uas tso cai rau cov ntaub ntawv yuav overwritten thaum qhib ib tug archive

Hauv Ark archive manager tsim los ntawm KDE project txheeb xyuas yooj yim (CVE-2020-16116), uas tso cai rau, thaum qhib ib qho tshwj xeeb tsim archive hauv ib daim ntawv thov, los sau cov ntaub ntawv sab nraud ntawm phau ntawv teev npe rau qhib lub archive. Qhov teeb meem kuj tshwm sim thaum qhib cov ntaub ntawv hauv Dolphin file manager (Extract item in the context menu), uas siv Ark functionality ua hauj lwm nrog archives. Qhov tsis muaj zog zoo li qhov teeb meem uas paub ntev Zip swb.

Kev siv qhov tsis zoo los ntawm kev ntxiv txoj hauv kev rau cov ntaub ntawv uas muaj "../" cov cim, thaum ua tiav, Ark tuaj yeem mus dhau ntawm cov npe hauv qab. Piv txwv li, siv qhov tsis muaj qhov tsis txaus ntseeg, koj tuaj yeem sau cov ntawv .bashrc lossis tso cov ntawv sau rau hauv ~/.config/autostart directory los teeb tsa koj cov cai nrog cov cai ntawm tus neeg siv tam sim no. Txheeb xyuas kom tshaj tawm ceeb toom thaum muaj teeb meem archives tau ntxiv rau hauv Ark 20.08.0 tso tawm. Kuj muaj rau kev kho thaj.

Tau qhov twg los: opennet.ru

Ntxiv ib saib