BugTraq
Directory traversal vulnerabilities in several archivers processing .tar Dec 16 2002 11:40PM
Florian Schafferhans (fs computer-security de) (2 replies)
RE: Directory traversal vulnerabilities in several archivers processing .tar Dec 18 2002 05:18AM
Andrew Kopp (drewk nexed net) (2 replies)
I don't really think this falls into vulnerability because most software
will prompt you before it overwrites any file by default. And if anyone
would actually allow their own SSHd binary to be over written deserves
to be hacked.

And to those who extract an un-trusted archive and set the "don't prompt
me" flag, you really need a lesson in 'basic' (very obvious too!)
security practices.

No pun intended.

Regards,

drewk~

-----Original Message-----
From: Florian Schafferhans [mailto:fs (at) computer-security (dot) de [email concealed]]
Sent: Monday, December 16, 2002 6:41 PM
To: bugtraq (at) securityfocus (dot) com [email concealed]
Subject: Directory traversal vulnerabilities in several archivers
processing .tar

Subject

Directory traversal vulnerabilities in several
archivers processing .tar
files

[ email... blah blah blah blah ]

[ reply ]
RE: Directory traversal vulnerabilities in several archivers processing .tar Dec 20 2002 02:36PM
konto mailingowe (maillists black punkt pl)
Re: Directory traversal vulnerabilities in several archivers processing .tar Dec 19 2002 07:35PM
Stephen Samuel (samuel bcgreen com)
Re: Directory traversal vulnerabilities in several archivers processing .tar Dec 17 2002 05:54PM
der Mouse (mouse Rodents Montreal QC CA)


 

Privacy Statement
Copyright 2010, SecurityFocus