Alerts This Week
Warning Icon 1 609
Alerts This Week
Warning Icon 1 609

Debian: DSA-3778-1 Critical: Ruby-Archive-Tar-Minitar Directory Traversal

debian
Calendar Grey January 31, 2017
Debian Logo
The recent update DSA-3778-1 from Debian addresses a security vulnerability in ruby-archive-tar-minitar, specifically a directory traversal flaw.
Michal Marek discovered that ruby-archive-tar-minitar, a Ruby library that provides the ability to deal with POSIX tar archive files, is prone to a directory traversal vulnerabilit...

Summary

For the stable distribution (jessie), this problem has been fixed in
version 0.5.2-2+deb8u1.

We recommend that you upgrade your ruby-archive-tar-minitar packages.

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/



Severity
critical
Lowest
Low
Medium
High
Critical

Package: ruby-archive-tar-minitar
CVE ID: CVE-2016-10173

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here