Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2007-4134
Description:Directory traversal vulnerability in extract.c in star before 1.5a84 allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.
Test IDs: 1.3.6.1.4.1.25623.1.0.861547   1.3.6.1.4.1.25623.1.0.58942   1.3.6.1.4.1.25623.1.0.59789   1.3.6.1.4.1.25623.1.0.58702   1.3.6.1.4.1.25623.1.0.62234  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2007-4134
1018646
http://securitytracker.com/id?1018646
20070901-01-P
ftp://patches.sgi.com/support/free/security/advisories/20070901-01-P.asc
20070907 FLEA-2007-0051-1 star
http://www.securityfocus.com/archive/1/478797/100/200/threaded
26626
http://secunia.com/advisories/26626
26672
http://secunia.com/advisories/26672
26673
http://secunia.com/advisories/26673
26857
http://secunia.com/advisories/26857
27318
http://secunia.com/advisories/27318
27544
http://secunia.com/advisories/27544
FEDORA-2007-1852
http://www.redhat.com/archives/fedora-package-announce/2007-August/msg00425.html
GLSA-200710-23
http://www.gentoo.org/security/en/glsa/glsa-200710-23.xml
RHSA-2007:0873
http://www.redhat.com/support/errata/RHSA-2007-0873.html
ftp://ftp.berlios.de/pub/star/alpha/AN-1.5a84
ftp://ftp.berlios.de/pub/star/alpha/AN-1.5a84
http://support.avaya.com/elmodocs2/security/ASA-2007-414.htm
http://support.avaya.com/elmodocs2/security/ASA-2007-414.htm
https://bugs.gentoo.org/show_bug.cgi?id=189690
https://bugs.gentoo.org/show_bug.cgi?id=189690
https://issues.rpath.com/browse/RPL-1669
https://issues.rpath.com/browse/RPL-1669
oval:org.mitre.oval:def:11098
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11098




© 1998-2025 E-Soft Inc. All rights reserved.