Back to search
CVE-2021-32610
Published: Jul 27, 2021
Modified: Aug 3, 2024
PUBLISHED
Description
In Archive_Tar before 1.4.14, symlinks can refer to targets outside of the extracted archive, a different vulnerability than CVE-2020-36193.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://www.drupal.org/sa-core-2021-004
x_refsource_CONFIRM
[debian-lts-announce] 20210726 [SECURITY] [DLA 2721-1] drupal7 security update
mailing-list
x_refsource_MLIST
https://github.com/pear/Archive_Tar/releases/tag/1.4.14
x_refsource_MISC
FEDORA-2021-6cf271948a
vendor-advisory
x_refsource_FEDORA
FEDORA-2021-c9c1f6e5c7
vendor-advisory
x_refsource_FEDORA
FEDORA-2021-8093e197f4
vendor-advisory
x_refsource_FEDORA
FEDORA-2021-0c013f520c
vendor-advisory
x_refsource_FEDORA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now