tar/TarFileReader.cpp in Cauldron cbang (aka C-Bang or C!) before 1.6.0 allows Directory Traversal during extraction from a TAR archive.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-15908.json"
[
{
"source": "https://github.com/cauldrondevelopmentllc/cbang/commit/1c1dba62bd3e6fa9d0d0c0aa21926043b75382c7",
"digest": {
"length": 371.0,
"function_hash": "330291312336699062807119318044419557734"
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function",
"target": {
"file": "src/cbang/tar/TarFileReader.cpp",
"function": "TarFileReader::extract"
},
"id": "CVE-2020-15908-5941743f"
},
{
"source": "https://github.com/cauldrondevelopmentllc/cbang/commit/1c1dba62bd3e6fa9d0d0c0aa21926043b75382c7",
"digest": {
"line_hashes": [
"42323268789285406099917393496897498123",
"47861095226362428319389377121679713277",
"84378934578530421915437068660492534071",
"173004692445328327383613338185261069104",
"292874264989561364870479856867659474619",
"73885368114660467223094850905399786686"
],
"threshold": 0.9
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line",
"target": {
"file": "src/cbang/tar/TarFileReader.cpp"
},
"id": "CVE-2020-15908-987c4292"
}
]