CVE-2015-1197
EPSS 3.3%發布日:2015/2/19修改日:2026/4/28
描述
cpio 2.11, when using the --no-absolute-filenames option, allows local users to write to arbitrary files via a symlink attack on a file in an archive.
受影響套件(1)
- Debian/cpiofrom 0, < 2.11+dfsg-4.1
cpio 2.11, when using the --no-absolute-filenames option, allows local users to write to arbitrary files via a symlink attack on a file in an archive.