Description
AppImage appimaged before 1.0.3 does not properly check whether a downloaded file is a valid appimage. For example, it will accept a crafted mp3 file that contains an appimage, and install it.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-17954 | AppImage appimaged before 1.0.3 does not properly check whether a downloaded file is a valid appimage. For example, it will accept a crafted mp3 file that contains an appimage, and install it. |
References
| Link | Providers |
|---|---|
| https://github.com/refi64/CVE-2020-25265-25266 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T15:33:05.646Z
Reserved: 2020-09-11T00:00:00.000Z
Link: CVE-2020-25266
No data.
Status : Modified
Published: 2020-12-02T17:15:14.783
Modified: 2024-11-21T05:17:48.630
Link: CVE-2020-25266
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD