Tar Project Tar 0.2.2 for Rust

CPE Details

Tar Project Tar 0.2.2 for Rust
0.2.2
2021-08-18
12h30 +00:00
2021-08-18
12h34 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:tar_project:tar:0.2.2:*:*:*:*:rust:*:*

Informations

Vendor

tar_project

Product

tar

Version

0.2.2

Target Software

rust

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-38511 2021-08-10 20h12 +00:00 An issue was discovered in the tar crate before 0.4.36 for Rust. When symlinks are present in a TAR archive, extraction can create arbitrary directories via .. traversal.
7.5
High
CVE-2018-20990 2019-08-26 10h39 +00:00 An issue was discovered in the tar crate before 0.4.16 for Rust. Arbitrary file overwrite can occur via a symlink or hardlink in a TAR archive.
7.5
High