Open-source ARJ archiver 3.10.22 allows remote attackers to conduct directory traversal attacks via a symlink attack in an ARJ archive.
| Software | From | Fixed in |
|---|---|---|
| arj_software / arj_archiver | - | 3.10.22.x |
| fedoraproject / fedora | 22 | 22.x |
| fedoraproject / fedora | 20 | 20.x |
| fedoraproject / fedora | 21 | 21.x |