 |
|
|
|
| tar archiver directory traversal | | Published: |  | 28.11.2006 | | Source: |  | FULL-DISCLOSURE | | SecurityVulns ID: |  | 6863 | | Type: |  | local | | Level: |  | 5/10 | | Description: |  | Problem with outdated GNUTYPE_NAMES structure parsing allow to create symbolic links outside target directory. |
| Affected: |  | GNU : tar 1.15 | | |  | GNU : tar 1.16 |
| Original document |  | Teemu Salmela, [Full-disclosure] GNU tar directory traversal (28.11.2006) |
| Daily web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl) | | Published: |  | 28.11.2006 | | Source: |  | BUGTRAQ | | SecurityVulns ID: |  | 6865 | | Type: |  | remote | | Level: |  | 5/10 | | Description: |  | PHP inclusions, SQL injections, directory traversals, crossite scripting, information leaks, etc. |
| |
|
| |