Computer Security
[EN] securityvulns.ru
no-pyccku



tar archiver directory traversal
Published:28.11.2006
Source:FULL-DISCLOSURE
SecurityVulns ID:6863
Type:local
Level:5/10
Description:Problem with outdated GNUTYPE_NAMES structure parsing allow to create symbolic links outside target directory.
Affected:GNU : tar 1.15
 GNU : tar 1.16
Original documentdocumentTeemu Salmela, [Full-disclosure] GNU tar directory traversal (28.11.2006)
Files:GNU tar directory traversal exploit
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
 



Рейтинг@Mail.ru