[Bug 15106] thre is a directory traversal vulnerability of "tar" appet

bugzilla at busybox.net bugzilla at busybox.net
Tue Nov 8 08:28:29 UTC 2022


https://bugs.busybox.net/show_bug.cgi?id=15106

--- Comment #1 from xiedongmo <alligatorking at 126.com> ---
Created attachment 9406
  --> https://bugs.busybox.net/attachment.cgi?id=9406&action=edit
the poc detail

the poc detail.
hack5.tar shows how to construct an tar to attack.
runpoc.png shows the result after attacking

-- 
You are receiving this mail because:
You are on the CC list for the bug.


More information about the busybox-cvs mailing list