📦

gcab

Vendor: gnome

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 6 Total Indexed
Avg. EPSS 2.49% Exploit Prob.
Latest CVE CVE-2018-5345 Jan 12

Security Vulnerability Index

Page 1 / 1
7.8 CVSS

A stack-based buffer overflow within GNOME gcab through 0.7.4 can be exploited by malicious attackers to cause a crash or, potentially, execute arbitrary code via a crafted .cab file.

EPSS: 2.18%
6.4 CVSS

Directory traversal vulnerability in the gcab_folder_extract function in libgcab/gcab-folder.c in gcab 0.4 allows remote attackers to write to arbitrary files via crafted path in a CAB file, as demonstrated by "\tmp\moo."

EPSS: 2.79%