Debian Patches
Status for binwalk/2.4.3+dfsg1-3
| Patch | Description | Author | Forwarded | Bugs | Origin | Last update |
|---|---|---|---|---|---|---|
| prevent-path-traversal-in-wince.patch | Prevent path traversal in WinCE extraction plugin
The WinCE extraction plugin trusted filenames supplied by the input
image and used them directly to construct output paths. A crafted WinCE image could therefore cause files to be written outside the extraction directory. . Resolve the extraction paths and ensure they remain below the extraction directory before writing files. . CVE-2026-7179 |
Fukui Daichi <a.dog.will.talk@akane.waseda.jp> | not-needed | debian | 2026-08-26 |
All known versions for source package 'binwalk'
- 2.4.3+dfsg1-3 (sid)
- 2.4.3+dfsg1-2 (trixie, forky)
- 2.3.4+dfsg1-1 (bookworm)
