CVE-2007-4829

Directory traversal vulnerability in the Archive::Tar Perl module 1.36 and earlier allows user-assisted remote attackers to overwrite arbitrary files via a TAR archive that contains a file whose name is an absolute path or has ".." sequences.
Configurations

Configuration 1

cpe:2.3:a:archive::tar_project:archive::tar:*:*:*:*:*:perl:*:*
cpe:2.3:o:canonical:ubuntu_linux:6.06:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:7.10:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:8.10:*:*:*:*:*:*:*

Information

Published : 2007-11-02 04:46

Updated : 2018-08-08 01:48


NVD link : CVE-2007-4829

Mitre link : CVE-2007-4829

Products Affected
No products.
CWE