Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-3697

Опубликовано: 29 окт. 2014
Источник: ubuntu
Приоритет: negligible
EPSS Низкий
CVSS2: 6.4

Описание

Absolute path traversal vulnerability in the untar_block function in win32/untar.c in Pidgin before 2.10.10 on Windows allows remote attackers to write to arbitrary files via a drive name in a tar archive of a smiley theme.

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

not-affected

lucid

ignored

end of life
precise

not-affected

trusty

not-affected

trusty/esm

not-affected

upstream

needs-triage

utopic

not-affected

Показывать по

EPSS

Процентиль: 77%
0.01028
Низкий

6.4 Medium

CVSS2

Связанные уязвимости

nvd
больше 11 лет назад

Absolute path traversal vulnerability in the untar_block function in win32/untar.c in Pidgin before 2.10.10 on Windows allows remote attackers to write to arbitrary files via a drive name in a tar archive of a smiley theme.

debian
больше 11 лет назад

Absolute path traversal vulnerability in the untar_block function in w ...

github
больше 3 лет назад

Absolute path traversal vulnerability in the untar_block function in win32/untar.c in Pidgin before 2.10.10 on Windows allows remote attackers to write to arbitrary files via a drive name in a tar archive of a smiley theme.

EPSS

Процентиль: 77%
0.01028
Низкий

6.4 Medium

CVSS2