Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:23156
HistoryApr 10, 2020 - 12:18 a.m.

Arbitrary File Overwrite

2020-04-1000:18:09
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
9

0.02 Low

EPSS

Percentile

88.9%

tar is vulnerable to arbitrary file overwrite. The vulnerability exists as a path traversal flaw was discovered in the way GNU tar extracted archives. A malicious user could create a tar archive that could write to arbitrary files to which the user running GNU tar had write access.

CPENameOperatorVersion
tareq1.15.1__23.el5
tareq1.15.1__23.el5

References