Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2007-4131

Опубликовано: 25 авг. 2007
Источник: ubuntu
Приоритет: untriaged
CVSS2: 6.8

Описание

Directory traversal vulnerability in the contains_dot_dot function in src/names.c in GNU tar allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.

РелизСтатусПримечание
dapper

released

1.15.1-2ubuntu2.2
devel

released

1.18-2ubuntu1
edgy

released

1.15.91-2ubuntu0.4
feisty

released

1.16-2ubuntu0.1
upstream

needs-triage

Показывать по

6.8 Medium

CVSS2

Связанные уязвимости

redhat
почти 18 лет назад

Directory traversal vulnerability in the contains_dot_dot function in src/names.c in GNU tar allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.

nvd
почти 18 лет назад

Directory traversal vulnerability in the contains_dot_dot function in src/names.c in GNU tar allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.

debian
почти 18 лет назад

Directory traversal vulnerability in the contains_dot_dot function in ...

github
около 3 лет назад

Directory traversal vulnerability in the contains_dot_dot function in src/names.c in GNU tar allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.

oracle-oval
почти 18 лет назад

ELSA-2007-0860: Moderate: tar security update (MODERATE)

6.8 Medium

CVSS2