CVE-2002-1216
published 2002-10-28CVE-2002-1216: GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to overwrite arbitrary files via a symlink attack, as the result of a modification…
PriorityP422medium5CVSS 2.0
AVNACLAuNCNIPAN
EPSS
1.57%
72.8th percentile
GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to overwrite arbitrary files via a symlink attack, as the result of a modification that effectively disabled the security check.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | tar | < tar 1.16-2 (bookworm) | tar 1.16-2 (bookworm) |
| debian | tar | < tar 1.13.25 (bookworm) | tar 1.13.25 (bookworm) |
| gnu | tar | <= 1.13.25 | — |
| gnu | tar | — | — |
| gnu | tar | — | — |
| gnu | tar | — | — |
| gnu | tar | >= 0 < 1.13.25 | 1.13.25 |
| gnu | tar | >= 0 < 1.16-2 | 1.16-2 |
| gnu | tar | >= 0 < 1.13.25 | 1.13.25 |
| gnu | tar | >= 0 < 1.16-2 | 1.16-2 |
| gnu | tar | >= 0 < 1.13.25 | 1.13.25 |
| gnu | tar | >= 0 < 1.16-2 | 1.16-2 |
| gnu | tar | >= 0 < 1.13.25 | 1.13.25 |
| gnu | tar | >= 0 < 1.16-2 | 1.16-2 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
security flaw
vendor_redhat·2006-11-21·CVSS 5.0
CVE-2006-6097 [MEDIUM] security flaw
security flaw
GNU tar 1.16 and 1.15.1, and possibly other versions, allows user-assisted attackers to overwrite arbitrary files via a tar file that contains a GNUTYPE_NAMES record with a symbolic link, which is not properly handled by the extract_archive function in extract.c and extract_mangle function in mangle.c, a variant of CVE-2002-1216.
Statement: Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.
Debian
CVE-2006-6097: tar - GNU tar 1.16 and 1.15.1, and possibly other versions, allows user-assisted attac...
vendor_debian·2006·CVSS 5.0
CVE-2006-6097 [MEDIUM] CVE-2006-6097: tar - GNU tar 1.16 and 1.15.1, and possibly other versions, allows user-assisted attac...
GNU tar 1.16 and 1.15.1, and possibly other versions, allows user-assisted attackers to overwrite arbitrary files via a tar file that contains a GNUTYPE_NAMES record with a symbolic link, which is not properly handled by the extract_archive function in extract.c and extract_mangle function in mangle.c, a variant of CVE-2002-1216.
Scope: local
bookworm: resolved (fixed in 1.16-2)
bullseye: resolved (fixed in 1.16-2)
forky: resolved (fixed in 1.16-2)
sid: resolved (fixed in 1.16-2)
trixie: resolved (fixed in 1.16-2)
Red Hat
security flaw
vendor_redhat·2002-09-28·CVSS 5.0
CVE-2002-1216 [MEDIUM] security flaw
security flaw
GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to overwrite arbitrary files via a symlink attack, as the result of a modification that effectively disabled the security check.
Debian
CVE-2002-1216: tar - GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to ove...
vendor_debian·2002·CVSS 5.0
CVE-2002-1216 [MEDIUM] CVE-2002-1216: tar - GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to ove...
GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to overwrite arbitrary files via a symlink attack, as the result of a modification that effectively disabled the security check.
Scope: local
bookworm: resolved (fixed in 1.13.25)
bullseye: resolved (fixed in 1.13.25)
forky: resolved (fixed in 1.13.25)
sid: resolved (fixed in 1.13.25)
trixie: resolved (fixed in 1.13.25)
GHSA
GHSA-f4p7-cvff-gr4c: GNU tar 1
ghsa_unreviewed·2022-05-03·CVSS 5.0
CVE-2006-6097 [MEDIUM] GHSA-f4p7-cvff-gr4c: GNU tar 1
GNU tar 1.16 and 1.15.1, and possibly other versions, allows user-assisted attackers to overwrite arbitrary files via a tar file that contains a GNUTYPE_NAMES record with a symbolic link, which is not properly handled by the extract_archive function in extract.c and extract_mangle function in mangle.c, a variant of CVE-2002-1216.
GHSA
GHSA-29pg-f8vr-x2wh: GNU tar 1
ghsa_unreviewed·2022-04-30
CVE-2002-1216 [MEDIUM] GHSA-29pg-f8vr-x2wh: GNU tar 1
GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to overwrite arbitrary files via a symlink attack, as the result of a modification that effectively disabled the security check.
OSV
CVE-2006-6097: GNU tar 1
osv·2006-11-24·CVSS 5.0
CVE-2006-6097 [MEDIUM] CVE-2006-6097: GNU tar 1
GNU tar 1.16 and 1.15.1, and possibly other versions, allows user-assisted attackers to overwrite arbitrary files via a tar file that contains a GNUTYPE_NAMES record with a symbolic link, which is not properly handled by the extract_archive function in extract.c and extract_mangle function in mangle.c, a variant of CVE-2002-1216.
OSV
CVE-2002-1216: GNU tar 1
osv·2002-10-28·CVSS 5.0
CVE-2002-1216 [MEDIUM] CVE-2002-1216: GNU tar 1
GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to overwrite arbitrary files via a symlink attack, as the result of a modification that effectively disabled the security check.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2006-6097 security flaw
bugzilla·2018-08-16·CVSS 5.0
CVE-2006-6097 [MEDIUM] CVE-2006-6097 security flaw
CVE-2006-6097 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
GNU tar 1.16 and 1.15.1, and possibly other versions, allows user-assisted attackers to overwrite arbitrary files via a tar file that contains a GNUTYPE_NAMES record with a symbolic link, which is not properly handled by the extract_archive function in extract.c and extract_mangle function in mangle.c, a variant of CVE-2002-1216.
---
Statement:
Red Hat Enterprise Linux 5 is not vulnerable to this issue as it contains a backported patch.
Bugzilla
CVE-2002-1216 security flaw
bugzilla·2018-08-16·CVSS 5.0
CVE-2002-1216 [MEDIUM] CVE-2002-1216 security flaw
CVE-2002-1216 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
GNU tar 1.13.19 and other versions before 1.13.25 allows remote attackers to overwrite arbitrary files via a symlink attack, as the result of a modification that effectively disabled the security check.
Bugzilla
CVE-2007-4829 perl-Archive-Tar directory traversal flaws
bugzilla·2007-09-18·CVSS 2.1
CVE-2007-4829 [LOW] CVE-2007-4829 perl-Archive-Tar directory traversal flaws
CVE-2007-4829 perl-Archive-Tar directory traversal flaws
Directory traversal vulnerability in Archive::Tar perl module allows
user-assisted remote attackers to overwrite arbitrary files writable by user
running application using this module via an absolute path or a .. (dot dot)
sequence in filenames in a TAR archive.
Similar issues were reported and fixed for GNU tar during past several years,
e.g.: CVE-2001-1267, CVE-2002-0399, CVE-2002-1216 and CVE-2007-4131.
This issue is important when this module is used to extract tar archives from
untrusted sources. However, some of such applications either implement
workarounds / own checks (sa-update in spamassassin) or dropped module support
at all (amavisd-new).
Discussion:
Similar issue was reported for Python's tarfile module, see #26326
http://marc.info/?l=bugtraq&m=103419290219680&w=2http://www.iss.net/security_center/static/10224.phphttp://www.mandriva.com/security/advisories?name=MDKSA-2006:219http://www.openpkg.com/security/advisories/OpenPKG-SA-2006.038.htmlhttp://www.redhat.com/support/errata/RHSA-2002-096.htmlhttp://marc.info/?l=bugtraq&m=103419290219680&w=2http://www.iss.net/security_center/static/10224.phphttp://www.mandriva.com/security/advisories?name=MDKSA-2006:219http://www.openpkg.com/security/advisories/OpenPKG-SA-2006.038.htmlhttp://www.redhat.com/support/errata/RHSA-2002-096.html
2002-10-28
Published