9.8
CVSSv3

CVE-2019-9195

Published: 26/02/2019 Updated: 28/01/2020
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

util/src/zip.rs in Grin prior to 1.0.2 mishandles suspicious files. An attacker can execute arbitrary code via directory traversal in a ZIP archive.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

grin grin

Github Repositories

Grin project management resources and docs

Grin project management resources and docs Decision log A chronological list of decisions made by the Grin project, with references Available here Release process Steps to be completed as part of every node or wallet release Available here Financials Document Description Addresses The list of cryptocurrency addresses associated to the project Transparency reports