Security Advisory

CVE-2024-32944

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-05-28 03:11:04
Last updated 2024-10-29 14:51:18
Assigner jpcert
State PUBLISHED

Description

Path traversal vulnerability exists in UTAU versions prior to v0.4.19. If a user of the product installs a crafted UTAU voicebank installer (.uar file, .zip file) to UTAU, an arbitrary file may be placed.