Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-35h8-7h6c-x54q

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Multiple directory traversal vulnerabilities in the (1) tar_extract_glob and (2) tar_extract_all functions in libtar 1.2.20 and earlier allow remote attackers to overwrite arbitrary files via a .. (dot dot) in a crafted tar file.

Multiple directory traversal vulnerabilities in the (1) tar_extract_glob and (2) tar_extract_all functions in libtar 1.2.20 and earlier allow remote attackers to overwrite arbitrary files via a .. (dot dot) in a crafted tar file.

EPSS

Процентиль: 62%
0.00436
Низкий

Дефекты

CWE-22

Связанные уязвимости

ubuntu
больше 11 лет назад

Multiple directory traversal vulnerabilities in the (1) tar_extract_glob and (2) tar_extract_all functions in libtar 1.2.20 and earlier allow remote attackers to overwrite arbitrary files via a .. (dot dot) in a crafted tar file.

redhat
больше 11 лет назад

Multiple directory traversal vulnerabilities in the (1) tar_extract_glob and (2) tar_extract_all functions in libtar 1.2.20 and earlier allow remote attackers to overwrite arbitrary files via a .. (dot dot) in a crafted tar file.

nvd
больше 11 лет назад

Multiple directory traversal vulnerabilities in the (1) tar_extract_glob and (2) tar_extract_all functions in libtar 1.2.20 and earlier allow remote attackers to overwrite arbitrary files via a .. (dot dot) in a crafted tar file.

msrc
почти 5 лет назад

Описание отсутствует

debian
больше 11 лет назад

Multiple directory traversal vulnerabilities in the (1) tar_extract_gl ...

EPSS

Процентиль: 62%
0.00436
Низкий

Дефекты

CWE-22