Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-453c-44v9-38fg

Опубликовано: 03 мая 2022
Источник: github
Github: Не прошло ревью

Описание

bzip2 before 1.0.2 in FreeBSD 4.5 and earlier, OpenLinux 3.1 and 3.1.1, and possibly systems, uses the permissions of symbolic links instead of the actual files when creating an archive, which could cause the files to be extracted with less restrictive permissions than intended.

bzip2 before 1.0.2 in FreeBSD 4.5 and earlier, OpenLinux 3.1 and 3.1.1, and possibly systems, uses the permissions of symbolic links instead of the actual files when creating an archive, which could cause the files to be extracted with less restrictive permissions than intended.

EPSS

Процентиль: 37%
0.00157
Низкий

Связанные уязвимости

nvd
больше 23 лет назад

bzip2 before 1.0.2 in FreeBSD 4.5 and earlier, OpenLinux 3.1 and 3.1.1, and possibly systems, uses the permissions of symbolic links instead of the actual files when creating an archive, which could cause the files to be extracted with less restrictive permissions than intended.

EPSS

Процентиль: 37%
0.00157
Низкий