Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2007-4829
HistoryNov 02, 2007 - 4:46 p.m.

CVE-2007-4829

2007-11-0216:46:00
Debian Security Bug Tracker
security-tracker.debian.org
12

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.008

Percentile

82.4%

Directory traversal vulnerability in the Archive::Tar Perl module 1.36 and earlier allows user-assisted remote attackers to overwrite arbitrary files via a TAR archive that contains a file whose name is an absolute path or has โ€œโ€ฆโ€ sequences.

OSVersionArchitecturePackageVersionFilename
Debian12allperl<ย 5.10.0-19perl_5.10.0-19_all.deb
Debian11allperl<ย 5.10.0-19perl_5.10.0-19_all.deb
Debian999allperl<ย 5.10.0-19perl_5.10.0-19_all.deb
Debian13allperl<ย 5.10.0-19perl_5.10.0-19_all.deb

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.008

Percentile

82.4%