CVE-2002-1216

GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to overwrite arbitrary files via a symlink attack, as the result of a modification that effectively disabled the security check.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:gnu:tar:*:*:*:*:*:*:*:*
cpe:2.3:a:gnu:tar:1.13.19:*:*:*:*:*:*:*

History

20 Nov 2024, 23:40

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=103419290219680&w=2 - () http://marc.info/?l=bugtraq&m=103419290219680&w=2 -
References () http://www.iss.net/security_center/static/10224.php - Vendor Advisory () http://www.iss.net/security_center/static/10224.php - Vendor Advisory
References () http://www.mandriva.com/security/advisories?name=MDKSA-2006:219 - () http://www.mandriva.com/security/advisories?name=MDKSA-2006:219 -
References () http://www.openpkg.com/security/advisories/OpenPKG-SA-2006.038.html - () http://www.openpkg.com/security/advisories/OpenPKG-SA-2006.038.html -
References () http://www.redhat.com/support/errata/RHSA-2002-096.html - Patch, Vendor Advisory () http://www.redhat.com/support/errata/RHSA-2002-096.html - Patch, Vendor Advisory

Information

Published : 2002-10-28 05:00

Updated : 2024-11-20 23:40


NVD link : CVE-2002-1216

Mitre link : CVE-2002-1216

CVE.ORG link : CVE-2002-1216


JSON object : View

Products Affected

gnu

  • tar