Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2026-4360

около 1 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2026-4360

около 1 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5
EPSS: Низкий
nvd логотип

CVE-2026-4360

около 1 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2026-4360

28 дней назад

Tarfile.extract() doesn't fully respect filter parameter

EPSS: Низкий
debian логотип

CVE-2026-4360

около 1 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-gf2w-jqmq-fcm8

около 1 месяца назад

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-4360

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-4360

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5
0%
Низкий
около 1 месяца назад
nvd логотип
CVE-2026-4360

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
0%
Низкий
около 1 месяца назад
msrc логотип
CVE-2026-4360

Tarfile.extract() doesn't fully respect filter parameter

0%
Низкий
28 дней назад
debian логотип
CVE-2026-4360

In the Tarfile.extract() function, the filter parameter is not passed ...

CVSS3: 5.3
0%
Низкий
около 1 месяца назад
github логотип
GHSA-gf2w-jqmq-fcm8

In the Tarfile.extract() function, the filter parameter is not passed properly when extracting hardlinks. An affected system that extracts content from untrusted tar files could end up writing files with an unexpected uid/gid despite the user passing filter='data' to the extract() function.

CVSS3: 5.3
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу