Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-7207

Опубликовано: 29 фев. 2024
Источник: nvd
CVSS3: 4.9
EPSS Низкий

Описание

Debian's cpio contains a path traversal vulnerability. This issue was introduced by reverting CVE-2015-1197 patches which had caused a regression in --no-absolute-filenames. Upstream has since provided a proper fix to --no-absolute-filenames.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:gnu:cpio:2.13:*:*:*:*:*:*:*

EPSS

Процентиль: 19%
0.00061
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 4.9
ubuntu
почти 2 года назад

Debian's cpio contains a path traversal vulnerability. This issue was introduced by reverting CVE-2015-1197 patches which had caused a regression in --no-absolute-filenames. Upstream has since provided a proper fix to --no-absolute-filenames.

CVSS3: 5.5
redhat
около 2 лет назад

Debian's cpio contains a path traversal vulnerability. This issue was introduced by reverting CVE-2015-1197 patches which had caused a regression in --no-absolute-filenames. Upstream has since provided a proper fix to --no-absolute-filenames.

msrc
5 месяцев назад

Debian's cpio contains a path traversal vulnerability. This issue was introduced by reverting CVE-2015-1197 patches which had caused a regression in --no-absolute-filenames. Upstream has since provided a proper fix to --no-absolute-filenames.

CVSS3: 4.9
debian
почти 2 года назад

Debian's cpio contains a path traversal vulnerability. This issue was ...

suse-cvrf
почти 2 года назад

Security update for cpio

EPSS

Процентиль: 19%
0.00061
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-22