CVE-2015-2304 PUBLISHED

Absolute path traversal vulnerability in bsdcpio in libarchive 3.1.2 and earlier allows remote attackers to write to arbitrary files via a full pathname in an archive.

EPSS 3.52% · 87.5th percentile

Risk Scores

EPSS Score
3.52%
87.5th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSlibarchive0, 3.1.2-5ubuntu1, 3.1.2-7ubuntu1

Timeline

References

Open in Interactive Console →