First published: Fri Jan 24 2014(Updated: )
Directory traversal vulnerability in the Gapless Player SimZip (aka Simple Zip Viewer) application before 1.2.1 for Android allows remote attackers to overwrite or create arbitrary files via a crafted filename.
Credit: vultures@jpcert.or.jp
Affected Software | Affected Version | How to fix |
---|---|---|
Gapless Player SimZip | <=1.2 | |
Gapless Player SimZip | =1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0809 is considered a medium severity vulnerability due to its potential for data manipulation.
To fix CVE-2014-0809, update Gapless Player SimZip to version 1.2.1 or later.
CVE-2014-0809 is a directory traversal vulnerability.
Users of Gapless Player SimZip versions prior to 1.2.1 on Android are affected by CVE-2014-0809.
Yes, CVE-2014-0809 allows remote attackers to create or overwrite arbitrary files.