Directory traversal vulnerability in GNU tar 1.13.19 and earlier allows local users to overwrite arbitrary files during archive extraction via a tar file whose filenames contain a .. (dot dot).
References
Configurations
History
No history.
Information
Published : 2001-07-12 04:00
Updated : 2024-02-28 10:24
NVD link : CVE-2001-1267
Mitre link : CVE-2001-1267
CVE.ORG link : CVE-2001-1267
JSON object : View
Products Affected
gnu
- tar
CWE