Repo before commit 20dba06 allows attackers to cause a RCE on the server side via uploading a crafted ZIP file due to incorrect filtering rules of uploaded file
Package
LinuxASMCallGraph
Affected versions
< commit 20dba06bd1a3cf260612d4f21547c25002121cd5
Patched versions
c6579e34581ac9cc9da683d73c8658bcfc75711a
Impact
The bjrjk/LinuxASMCallGraph repo before commit 20dba06 allows attackers to cause a RCE on the server side via uploading a crafted ZIP file due to incorrect filtering rules of uploaded file.
Patches
The problem has been patched and the users should upgrade to the latest version.
Workarounds
There is no way for users to fix or remediate the vulnerability without upgrading.
References