Total vulnerabilities in the database
Multiple directory traversal vulnerabilities in the (1) tar_extract_glob and (2) tar_extract_all functions in libtar 1.2.20 and earlier allow remote attackers to overwrite arbitrary files via a .. (dot dot) in a crafted tar file.
Software | From | Fixed in |
---|---|---|
feep / libtar | 1.2.14 | 1.2.14.x |
feep / libtar | 1.2.17 | 1.2.17.x |
feep / libtar | 1.2.13 | 1.2.13.x |
feep / libtar | - | 1.2.20.x |
feep / libtar | 1.2.11 | 1.2.11.x |
feep / libtar | 1.2.15 | 1.2.15.x |
feep / libtar | 1.2.19 | 1.2.19.x |
feep / libtar | 1.2.18 | 1.2.18.x |
feep / libtar | 1.2.16 | 1.2.16.x |