Lucene search

K

Pigz Security Vulnerabilities

cve
cve

CVE-2013-0296

Race condition in pigz before 2.2.5 uses permissions derived from the umask when compressing a file before setting that file's permissions to match those of the original file, which might allow local users to bypass intended access permissions while compression is occurring.

6.2AI Score

0.0004EPSS

2014-04-27 09:55 PM
24
cve
cve

CVE-2015-1191

Multiple directory traversal vulnerabilities in pigz 2.3.1 allow remote attackers to write to arbitrary files via a (1) full pathname or (2) .. (dot dot) in an archive.

6.8AI Score

0.008EPSS

2015-01-21 06:59 PM
28