CVE-2002-1216

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
28/10/2002
Last modified:
18/10/2016

Description

GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to overwrite arbitrary files via a symlink attack, as the result of a modification that effectively disabled the security check.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gnu:tar:*:*:*:*:*:*:*:* 1.13.25 (including)
cpe:2.3:a:gnu:tar:1.13.19:*:*:*:*:*:*:*