Bugzilla – Bug 1215511
VUL-0: CVE-2023-43616: croc: sender can cause a receiver to overwrite files during ZIP extraction
Last modified: 2023-09-20 09:15:10 UTC
CVE-2023-43616 An issue was discovered in Croc through 9.6.5. A sender can cause a receiver to overwrite files during ZIP extraction. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2023-43616 https://www.cve.org/CVERecord?id=CVE-2023-43616 http://www.openwall.com/lists/oss-security/2023/09/08/2 https://github.com/schollz/croc/issues/594
Please submit to the following code streams: network croc openSUSE:Backports:SLE-15-SP6 croc