Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-2304

Опубликовано: 15 мар. 2015
Источник: debian
EPSS Низкий

Описание

Absolute path traversal vulnerability in bsdcpio in libarchive 3.1.2 and earlier allows remote attackers to write to arbitrary files via a full pathname in an archive.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libarchivefixed3.1.2-11package

Примечания

  • https://www.openwall.com/lists/oss-security/2015/01/16/7

  • Patch: https://github.com/libarchive/libarchive/commit/59357157706d47c365b2227739e17daba3607526

EPSS

Процентиль: 91%
0.0489
Низкий

Связанные уязвимости

ubuntu
больше 11 лет назад

Absolute path traversal vulnerability in bsdcpio in libarchive 3.1.2 and earlier allows remote attackers to write to arbitrary files via a full pathname in an archive.

redhat
больше 11 лет назад

Absolute path traversal vulnerability in bsdcpio in libarchive 3.1.2 and earlier allows remote attackers to write to arbitrary files via a full pathname in an archive.

nvd
больше 11 лет назад

Absolute path traversal vulnerability in bsdcpio in libarchive 3.1.2 and earlier allows remote attackers to write to arbitrary files via a full pathname in an archive.

github
больше 4 лет назад

Absolute path traversal vulnerability in bsdcpio in libarchive 3.1.2 and earlier allows remote attackers to write to arbitrary files via a full pathname in an archive.

suse-cvrf
больше 11 лет назад

Security update for libarchive

EPSS

Процентиль: 91%
0.0489
Низкий