refi64/CVE-2020-25265-25266

refi64/CVE-2020-25265-25266

Releases0
Stars2

CVE History

CVEPublishedCVSS v3CVSS v2
6.5 MEDIUM4.3 MEDIUM

AppImage libappimage before 1.0.3 allows attackers to trigger an overwrite of a system-installed .desktop file by providing a .desktop file that contains Name= with path components.

5.5 MEDIUM4.3 MEDIUM

AppImage appimaged before 1.0.3 does not properly check whether a downloaded file is a valid appimage. For example, it will accept a crafted mp3 file that contains an appimage, and install it.