Bugzilla – Bug 1195495
VUL-1: CVE-2005-2541: tar: does not properly warn the user when extracting setuid or setgid files
Last modified: 2022-02-03 10:36:04 UTC
rh#1974387 Tar 1.15.1 does not properly warn the user when extracting setuid or setgid files, which may allow local users or remote attackers to gain privileges. Reference: http://marc.info/?l=bugtraq&m=112327628230258&w=2 References: https://bugzilla.redhat.com/show_bug.cgi?id=1974387 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2005-2541 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-2541 http://marc.theaimsgroup.com/?l=bugtraq&m=112327628230258&w=2 http://marc.info/?l=bugtraq&m=112327628230258&w=2 https://lists.apache.org/thread.html/rc713534b10f9daeee2e0990239fa407e2118e4aa9e88a7041177497c@%3Cissues.guacamole.apache.org%3E
we are on new version, closing