- Synchronized data.

This commit is contained in:
CVE Team 2019-03-06 00:05:50 -05:00
parent dcf3e925df
commit b7c6c6f75a
No known key found for this signature in database
GPG Key ID: 0DA1F9F56BC892E8

View File

@ -34,7 +34,7 @@
"description_data" : [
{
"lang" : "eng",
"value" : "util/src/zip.rs in Grin before 1.0.2 mishandles suspicious files in an archive."
"value" : "util/src/zip.rs in Grin before 1.0.2 mishandles suspicious files. An attacker can execute arbitrary code via directory traversal in a ZIP archive."
}
]
},
@ -61,6 +61,11 @@
"name" : "https://github.com/mimblewimble/grin/releases/tag/v1.0.2",
"refsource" : "MISC",
"url" : "https://github.com/mimblewimble/grin/releases/tag/v1.0.2"
},
{
"name" : "https://www.grin-forum.org/t/critical-vulnerability-in-grin-1-0-1-and-older-fixed-in-1-0-2/4343",
"refsource" : "MISC",
"url" : "https://www.grin-forum.org/t/critical-vulnerability-in-grin-1-0-1-and-older-fixed-in-1-0-2/4343"
}
]
}