CVE-2013-4420

Source
https://cve.org/CVERecord?id=CVE-2013-4420
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2013-4420.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2013-4420
Downstream
Published
2014-02-20T16:55:05Z
Modified
2026-04-16T06:23:19.288536913Z
Summary
[none]
Details

Multiple directory traversal vulnerabilities in the (1) tarextractglob and (2) tarextractall functions in libtar 1.2.20 and earlier allow remote attackers to overwrite arbitrary files via a .. (dot dot) in a crafted tar file.

References

Affected packages