pax 1:20140703 allows remote attackers to write to arbitrary files via a symlink attack in an archive.
{ "binaries": [ { "binary_version": "1:20120606-2+deb7u1", "binary_name": "pax" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2015/UBUNTU-CVE-2015-1194.json"
{ "binaries": [ { "binary_version": "1:20151013-1", "binary_name": "pax" } ] }
{ "binaries": [ { "binary_version": "1:20171021-2", "binary_name": "pax" } ] }
{ "binaries": [ { "binary_version": "1:20190825-1", "binary_name": "pax" } ] }
{ "binaries": [ { "binary_version": "1:20201030-1build2", "binary_name": "pax" } ] }
{ "binaries": [ { "binary_version": "1:20201030-1build3", "binary_name": "pax" } ] }
{ "binaries": [ { "binary_version": "1:20240817-1", "binary_name": "pax" } ] }
{ "binaries": [ { "binary_version": "1:20240817-1build1", "binary_name": "pax" } ] }