Uploaded image for project: 'Felix'
  1. Felix
  2. FELIX-5870

Handle relative path elements in bundle classpath

    XMLWordPrintableJSON

    Details

    • Type: Bug
    • Status: Closed
    • Priority: Major
    • Resolution: Fixed
    • Affects Version/s: framework-5.6.10
    • Fix Version/s: framework-6.0.0
    • Component/s: Framework
    • Labels:
      None

      Description

      We have to handle relative path elements in the bundle classpath to make sure we are not allowing entries to be unpacked outside of the bundle cache:

      https://res.cloudinary.com/snyk/image/upload/v1528192501/zip-slip-vulnerability/technical-whitepaper.pdf

        Attachments

          Activity

            People

            • Assignee:
              karlpauls Karl Pauls
              Reporter:
              karlpauls Karl Pauls
            • Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

              Dates

              • Created:
                Updated:
                Resolved: