FYI to all
since Q-S does unzipping, you might be interested in obtaining updated unzip package.
Ref:
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2003-0282


RedHat'ers can find updated pkg at-
  http://rhn.redhat.com/errata/RHSA-2003-199.html

excerpt
"Directory traversal vulnerability in UnZip 5.50 allows attackers to overwrite arbitrary files via invalid characters between two . (dot) characters, which are filtered and result in a ".." sequence."




-------------------------------------------------------
This SF.Net email sponsored by: Free pre-built ASP.NET sites including
Data Reports, E-commerce, Portals, and Forums are available now.
Download today and enter to win an XBOX or Visual Studio .NET.
http://aspnet.click-url.com/go/psa00100006ave/direct;at.asp_061203_01/01
_______________________________________________
Qmail-scanner-general mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/qmail-scanner-general

Reply via email to