VDB

GCVE-110-MAGEIA-2021-60

GCVE-110-MAGEIA-2021-60
Advisory Published
Vulnetix · Advisory published January 31, 2021
The updated php-pear packages fix a security vulnerability in component Archive_tar, a symlink out-of-path write vulnerability. Tar.php in Archive_Tar through 1.4.11 allows write operations with Directory Traversal due to inadequate checking of symbolic links. (CVE-2020-36193).

Affected Products

VendorProductVersionsPlatforms
Mageiaphp-pear0 (affected), 1.10.9-1.2.mga7 (unaffected), 0 (affected), 1.10.9-1.2.mga7 (unaffected)
Mageiamythtv0 (affected), 31.0-20210323.1.1.mga8 (unaffected), 31.0-20210323.1.1.mga8.tainted (unaffected), 0 (affected)

Browse GCVE Records

74,267 records in the GCVE database · Updated July 22, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›