vulnerability

SUSE: CVE-2023-50255: SUSE Linux Security Advisory

Severity
7
CVSS
(AV:L/AC:M/Au:N/C:C/I:C/A:C)
Published
Dec 27, 2023
Added
Jan 3, 2024
Modified
Jan 28, 2025

Description

Deepin-Compressor is the default archive manager of Deepin Linux OS. Prior to 5.12.21, there's a path traversal vulnerability in deepin-compressor that can be exploited to achieve Remote Command Execution on the target system upon opening crafted archives. Users are advised to update to version 5.12.21 which addresses the issue. There are no known workarounds for this vulnerability.

Solutions

suse-upgrade-deepin-compressorsuse-upgrade-deepin-compressor-lang
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.