RubyGems minitar and archive-tar-minitar CVE-2016-10173 Local Directory Traversal Vulnerability

Bugtraq ID: 95874
Class: Input Validation Error
CVE: CVE-2016-10173
Remote: No
Local: Yes
Published: Jan 31 2017 12:00AM
Updated: Mar 07 2017 04:01AM
Credit: Max Veytsman.
Vulnerable: RubyGems minitar 0.5.4
RubyGems archive-tar-minitar 0.5.2
Debian Linux 6.0 sparc
Debian Linux 6.0 s/390
Debian Linux 6.0 powerpc
Debian Linux 6.0 mips
Debian Linux 6.0 ia-64
Debian Linux 6.0 ia-32
Debian Linux 6.0 arm
Debian Linux 6.0 amd64
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus