First published: Mon Mar 27 2017(Updated: )
ark before 16.12.1 might allow remote attackers to execute arbitrary code via an executable in an archive, related to associated applications.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Fedora | =25 | |
KDE Ark | <=16.12 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-5330 is considered a high severity vulnerability due to its potential to allow remote execution of arbitrary code.
To fix CVE-2017-5330, upgrade to KDE Ark version 16.12.1 or later, or apply any available patches.
CVE-2017-5330 affects KDE Ark versions up to 16.12 and Fedora version 25.
Exploitation of CVE-2017-5330 could lead to unauthorized remote code execution, compromising affected systems.
Currently, the best workaround for CVE-2017-5330 is to refrain from opening untrusted archives with affected versions of KDE Ark.