cve/2013/CVE-2013-4420.md
2024-05-26 14:27:05 +02:00

702 B

CVE-2013-4420

Description

Multiple directory traversal vulnerabilities in the (1) tar_extract_glob and (2) tar_extract_all functions in libtar 1.2.20 and earlier allow remote attackers to overwrite arbitrary files via a .. (dot dot) in a crafted tar file.

POC

Reference

No PoCs from references.

Github