VDB
GCVE-110-MAGEIA-2022-103
GCVE-110-MAGEIA-2022-103
Advisory Published
Untrusted tar file to symlink into an arbitrary location allowing file
overwrites. (CVE-2021-37712)
Arbitrary file creation/overwrite and arbitrary code execution.
(CVE-2021-37701)
Arbitrary File Creation/Overwrite vulnerability via insufficient symlink
protection. (CVE-2021-32803)
Arbitrary File Creation/Overwrite vulnerability due to insufficient
absolute path sanitization (CVE-2021-32804)
Affected Products
| Vendor | Product | Versions | Platforms |
|---|---|---|---|
| Mageia | gcc | 10.4.0-3.mga8 (unaffected), 0 (affected) | — |
| Mageia | nodejs-tar | 0 (affected), 6.0.5-1.1.mga8 (unaffected), 0 (affected), 6.0.5-1.1.mga8 (unaffected) | — |
References
Explore Further
Investigate this vulnerability in the interactive console or download the raw GCVE record.