PublicDate: 2005-05-02 04:00:00 UTC Candidate: CVE-2005-1228 References: https://ubuntu.com/security/notices/USN-116-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-1228 Description: Directory traversal vulnerability in gunzip -N in gzip 1.2.4 through 1.3.5 allows remote attackers to write to arbitrary directories via a .. (dot dot) in the original filename within a compressed file. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_gzip: released (1.3.5-12ubuntu0.1) edgy_gzip: released (1.3.5-14ubuntu1) feisty_gzip: released (1.3.5-14ubuntu1) devel_gzip: released (1.3.5-14ubuntu1) upstream_gzip: needs-triage