CVE-2002-0399
published 2002-10-10CVE-2002-0399: Directory traversal vulnerability in GNU tar 1.13.19 through 1.13.25, and possibly later versions, allows attackers to overwrite arbitrary files during archive…
PriorityP421medium5CVSS 2.0
AVNACLAuNCNIPAN
EPSS
3.59%
88.1th percentile
Directory traversal vulnerability in GNU tar 1.13.19 through 1.13.25, and possibly later versions, allows attackers to overwrite arbitrary files during archive extraction via a (1) "/.." or (2) "./.." string, which removes the leading slash but leaves the "..", a variant of CVE-2001-1267.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | tar | < tar 1.14-2.2 (bookworm) | tar 1.14-2.2 (bookworm) |
| gnu | tar | — | — |
| gnu | tar | >= 0 < 1.14-2.2 | 1.14-2.2 |
| gnu | tar | >= 0 < 1.14-2.2 | 1.14-2.2 |
| gnu | tar | >= 0 < 1.14-2.2 | 1.14-2.2 |
| gnu | tar | >= 0 < 1.14-2.2 | 1.14-2.2 |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux | — | — |
| redhat | enterprise_linux_desktop | — | — |
| redhat | linux_advanced_workstation | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2005-1918: tar - The original patch for a GNU tar directory traversal vulnerability (CVE-2002-039...
vendor_debian·2005·CVSS 5.0
CVE-2005-1918 [MEDIUM] CVE-2005-1918: tar - The original patch for a GNU tar directory traversal vulnerability (CVE-2002-039...
The original patch for a GNU tar directory traversal vulnerability (CVE-2002-0399) in Red Hat Enterprise Linux 3 and 2.1 uses an "incorrect optimization" that allows user-assisted attackers to overwrite arbitrary files via a crafted tar file, probably involving "/../" sequences with a leading "/".
Scope: local
bookworm: resolved (fixed in 1.14-2.2)
bullseye: resolved (fixed in 1.14-2.2)
forky: resolved (fixed in 1.14-2.2)
sid: resolved (fixed in 1.14-2.2)
trixie: resolved (fixed in 1.14-2.2)
Red Hat
tar archive path traversal issue
vendor_redhat·2003-07-21·CVSS 5.0
CVE-2005-1918 [MEDIUM] tar archive path traversal issue
tar archive path traversal issue
The original patch for a GNU tar directory traversal vulnerability (CVE-2002-0399) in Red Hat Enterprise Linux 3 and 2.1 uses an "incorrect optimization" that allows user-assisted attackers to overwrite arbitrary files via a crafted tar file, probably involving "/../" sequences with a leading "/".
Red Hat
security flaw
vendor_redhat·2002-09-30·CVSS 2.1
CVE-2002-0399 [LOW] security flaw
security flaw
Directory traversal vulnerability in GNU tar 1.13.19 through 1.13.25, and possibly later versions, allows attackers to overwrite arbitrary files during archive extraction via a (1) "/.." or (2) "./.." string, which removes the leading slash but leaves the "..", a variant of CVE-2001-1267.
GHSA
GHSA-vf44-2j68-pjgj: The original patch for a GNU tar directory traversal vulnerability (CVE-2002-0399) in Red Hat Enterprise Linux 3 and 2
ghsa_unreviewed·2022-05-03·CVSS 5.0
CVE-2005-1918 [MEDIUM] CWE-22 GHSA-vf44-2j68-pjgj: The original patch for a GNU tar directory traversal vulnerability (CVE-2002-0399) in Red Hat Enterprise Linux 3 and 2
The original patch for a GNU tar directory traversal vulnerability (CVE-2002-0399) in Red Hat Enterprise Linux 3 and 2.1 uses an "incorrect optimization" that allows user-assisted attackers to overwrite arbitrary files via a crafted tar file, probably involving "/../" sequences with a leading "/".
GHSA
GHSA-c6fq-h555-8326: Directory traversal vulnerability in GNU tar 1
ghsa_unreviewed·2022-04-30·CVSS 2.1
CVE-2002-0399 [LOW] GHSA-c6fq-h555-8326: Directory traversal vulnerability in GNU tar 1
Directory traversal vulnerability in GNU tar 1.13.19 through 1.13.25, and possibly later versions, allows attackers to overwrite arbitrary files during archive extraction via a (1) "/.." or (2) "./.." string, which removes the leading slash but leaves the "..", a variant of CVE-2001-1267.
OSV
CVE-2005-1918: The original patch for a GNU tar directory traversal vulnerability (CVE-2002-0399) in Red Hat Enterprise Linux 3 and 2
osv·2005-12-31·CVSS 5.0
CVE-2005-1918 [MEDIUM] CVE-2005-1918: The original patch for a GNU tar directory traversal vulnerability (CVE-2002-0399) in Red Hat Enterprise Linux 3 and 2
The original patch for a GNU tar directory traversal vulnerability (CVE-2002-0399) in Red Hat Enterprise Linux 3 and 2.1 uses an "incorrect optimization" that allows user-assisted attackers to overwrite arbitrary files via a crafted tar file, probably involving "/../" sequences with a leading "/".
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2002-0399 security flaw
bugzilla·2018-08-16·CVSS 2.1
CVE-2002-0399 [LOW] CVE-2002-0399 security flaw
CVE-2002-0399 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
Directory traversal vulnerability in GNU tar 1.13.19 through 1.13.25, and possibly later versions, allows attackers to overwrite arbitrary files during archive extraction via a (1) "/.." or (2) "./.." string, which removes the leading slash but leaves the "..", a variant of CVE-2001-1267.
Bugzilla
CVE-2007-4829 perl-Archive-Tar directory traversal flaws
bugzilla·2007-09-18·CVSS 2.1
CVE-2007-4829 [LOW] CVE-2007-4829 perl-Archive-Tar directory traversal flaws
CVE-2007-4829 perl-Archive-Tar directory traversal flaws
Directory traversal vulnerability in Archive::Tar perl module allows
user-assisted remote attackers to overwrite arbitrary files writable by user
running application using this module via an absolute path or a .. (dot dot)
sequence in filenames in a TAR archive.
Similar issues were reported and fixed for GNU tar during past several years,
e.g.: CVE-2001-1267, CVE-2002-0399, CVE-2002-1216 and CVE-2007-4131.
This issue is important when this module is used to extract tar archives from
untrusted sources. However, some of such applications either implement
workarounds / own checks (sa-update in spamassassin) or dropped module support
at all (amavisd-new).
Discussion:
Similar issue was reported for Python's tarfile module, see #26326
Bugzilla
Multiple tar issues (CVE-2005-1918, CVE-2006-0300)
bugzilla·2006-03-02·CVSS 5.0
CVE-2005-1918 [MEDIUM] Multiple tar issues (CVE-2005-1918, CVE-2006-0300)
Multiple tar issues (CVE-2005-1918, CVE-2006-0300)
There are two separate issues that affect different subsets of our products.
I. RHL 7.3, RHL 9, FC1 & FC2: tar archive path traversal issue
CVE-2005-1918: "The original patch for a GNU tar directory traversal
vulnerability (CVE-2002-0399) in Red Hat Enterprise Linux 3 and 2.1 uses
an 'incorrect optimization' that allows user-complicit attackers to over-
write arbitrary files via a crafted tar file, probably involving '/../'
sequences with a leading '/'."
This vulnerability appears to only affect tar-1.13.25 releases, which
these four distros use.
Red Hat issued RHSA-2006:0195-01 for RHEL 2.1 and RHEL 3:
"In 2002, a path traversal flaw was found in the way GNU tar extracted
archives. A malicious user could create a tar archive that cou
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000538http://marc.info/?l=bugtraq&m=103419290219680&w=2http://secunia.com/advisories/19130http://secunia.com/advisories/26604http://secunia.com/advisories/26673http://secunia.com/advisories/26987http://sunsolve.sun.com/search/document.do?assetkey=1-26-47800-1http://sunsolve.sun.com/search/document.do?assetkey=1-77-1000928.1-1http://www.iss.net/security_center/static/10224.phphttp://www.linuxsecurity.com/advisories/other_advisory-2400.htmlhttp://www.mandriva.com/security/advisories?name=MDKSA-2002:066http://www.novell.com/linux/security/advisories/2006_05_sr.htmlhttp://www.novell.com/linux/security/advisories/2007_19_sr.htmlhttp://www.redhat.com/support/errata/RHSA-2002-096.htmlhttp://www.securityfocus.com/archive/1/477731/100/0/threadedhttp://www.securityfocus.com/archive/1/477865/100/0/threadedhttp://www.securityfocus.com/bid/5834https://issues.rpath.com/browse/RPL-1631http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000538http://marc.info/?l=bugtraq&m=103419290219680&w=2http://secunia.com/advisories/19130http://secunia.com/advisories/26604http://secunia.com/advisories/26673http://secunia.com/advisories/26987http://sunsolve.sun.com/search/document.do?assetkey=1-26-47800-1http://sunsolve.sun.com/search/document.do?assetkey=1-77-1000928.1-1http://www.iss.net/security_center/static/10224.phphttp://www.linuxsecurity.com/advisories/other_advisory-2400.htmlhttp://www.mandriva.com/security/advisories?name=MDKSA-2002:066http://www.novell.com/linux/security/advisories/2006_05_sr.htmlhttp://www.novell.com/linux/security/advisories/2007_19_sr.htmlhttp://www.redhat.com/support/errata/RHSA-2002-096.htmlhttp://www.securityfocus.com/archive/1/477731/100/0/threadedhttp://www.securityfocus.com/archive/1/477865/100/0/threadedhttp://www.securityfocus.com/bid/5834https://issues.rpath.com/browse/RPL-1631
2002-10-10
Published