Directory traversal vulnerability in the minitar before 0.6 and archive-tar-minitar 0.5.2 gems for Ruby allows remote attackers to write to arbitrary files via a .. (dot dot) in a TAR archive entry.
Metrics
Affected Vendors & Products
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published: 2017-02-01T15:00:00.000Z
Updated: 2024-08-06T03:14:42.017Z
Reserved: 2017-01-29T00:00:00.000Z
Link: CVE-2016-10173
No data.
Status : Modified
Published: 2017-02-01T15:59:00.177
Modified: 2026-05-13T00:24:29.033
Link: CVE-2016-10173