tar/TarFileReader.cpp in Cauldron cbang (aka C-Bang or C!) before 1.6.0 allows Directory Traversal during extraction from a TAR archive.
[
{
"source": "https://github.com/cauldrondevelopmentllc/cbang/commit/1c1dba62bd3e6fa9d0d0c0aa21926043b75382c7",
"target": {
"function": "TarFileReader::extract",
"file": "src/cbang/tar/TarFileReader.cpp"
},
"deprecated": false,
"id": "CVE-2020-15908-5941743f",
"signature_version": "v1",
"digest": {
"length": 371.0,
"function_hash": "330291312336699062807119318044419557734"
},
"signature_type": "Function"
},
{
"source": "https://github.com/cauldrondevelopmentllc/cbang/commit/1c1dba62bd3e6fa9d0d0c0aa21926043b75382c7",
"target": {
"file": "src/cbang/tar/TarFileReader.cpp"
},
"deprecated": false,
"id": "CVE-2020-15908-987c4292",
"signature_version": "v1",
"digest": {
"threshold": 0.9,
"line_hashes": [
"42323268789285406099917393496897498123",
"47861095226362428319389377121679713277",
"84378934578530421915437068660492534071",
"173004692445328327383613338185261069104",
"292874264989561364870479856867659474619",
"73885368114660467223094850905399786686"
]
},
"signature_type": "Line"
}
]