MGASA-2016-0104

Source
https://advisories.mageia.org/MGASA-2016-0104.html
Import Source
https://advisories.mageia.org/MGASA-2016-0104.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2016-0104
Related
Published
2016-03-09T22:57:53Z
Modified
2016-03-09T18:35:46Z
Summary
Updated pigz packages fix security vulnerability
Details

Multiple directory traversal vulnerabilities in pigz 2.3.1 allow remote attackers to write to arbitrary files via a full pathname or .. (dot dot) in an archive (CVE-2015-1191).

References
Credits

Affected packages

Mageia:5 / pigz

Package

Name
pigz
Purl
pkg:rpm/mageia/pigz?distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.3.1-3.1.mga5

Ecosystem specific

{
    "section": "core"
}