Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2019-2097

Опубликовано: 13 авг. 2019
Источник: oracle-oval
Платформа: Oracle Linux 7

Описание

ELSA-2019-2097: perl-Archive-Tar security update (MODERATE)

[1.92-3]

  • CVE-2018-12015 - Directory traversal in Archive::Tar (bug #1592803)

Обновленные пакеты

Oracle Linux 7

Oracle Linux aarch64

perl-Archive-Tar

1.92-3.el7

Oracle Linux x86_64

perl-Archive-Tar

1.92-3.el7

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 7 лет назад

In Perl through 5.26.2, the Archive::Tar module allows remote attackers to bypass a directory-traversal protection mechanism, and overwrite arbitrary files, via an archive file containing a symlink and a regular file with the same name.

CVSS3: 5.4
redhat
больше 7 лет назад

In Perl through 5.26.2, the Archive::Tar module allows remote attackers to bypass a directory-traversal protection mechanism, and overwrite arbitrary files, via an archive file containing a symlink and a regular file with the same name.

CVSS3: 7.5
nvd
больше 7 лет назад

In Perl through 5.26.2, the Archive::Tar module allows remote attackers to bypass a directory-traversal protection mechanism, and overwrite arbitrary files, via an archive file containing a symlink and a regular file with the same name.

CVSS3: 7.5
debian
больше 7 лет назад

In Perl through 5.26.2, the Archive::Tar module allows remote attacker ...

suse-cvrf
больше 7 лет назад

Security update for perl