- EPSS 2.93%
- Veröffentlicht 06.02.2014 17:00:03
- Zuletzt bearbeitet 29.04.2026 01:13:23
cpio, as used in build 2007.05.10, 2010.07.28, and possibly other versions, allows remote attackers to overwrite arbitrary files via a symlink within an RPM package archive.
CVE-2010-0624
- EPSS 4.75%
- Veröffentlicht 15.03.2010 13:28:25
- Zuletzt bearbeitet 16.06.2026 23:16:31
Heap-based buffer overflow in the rmt_read__ function in lib/rtapelib.c in the rmt client functionality in GNU tar before 1.23 and GNU cpio before 2.11 allows remote rmt servers to cause a denial of service (memory corruption) or possibly execute arb...
CVE-2005-4268
- EPSS 0.54%
- Veröffentlicht 15.12.2005 18:11:00
- Zuletzt bearbeitet 16.06.2026 22:18:29
Buffer overflow in cpio 2.6-8.FC4 on 64-bit platforms, when creating a cpio archive, allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a file whose size is represented by more than 8 digits.
CVE-2005-1111
- EPSS 0.31%
- Veröffentlicht 02.05.2005 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:12:27
Race condition in cpio 2.6 and earlier allows local users to modify permissions of arbitrary files via a hard link attack on a file while it is being decompressed, whose permissions are changed by cpio after the decompression is complete.
CVE-2005-1229
- EPSS 1.88%
- Veröffentlicht 02.05.2005 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:12:41
Directory traversal vulnerability in cpio 2.6 and earlier allows remote attackers to write to arbitrary directories via a .. (dot dot) in a cpio file.