CVE-2013-4420

Source
https://cve.org/CVERecord?id=CVE-2013-4420
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2013-4420.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2013-4420
Downstream
Withdrawn
2026-01-27T04:11:44.185254Z
Published
2014-02-20T16:55:05Z
Modified
2026-04-16T01:47:07.823447074Z
Summary
[none]
Details

Multiple directory traversal vulnerabilities in the (1) tarextractglob and (2) tarextractall functions in libtar 1.2.20 and earlier allow remote attackers to overwrite arbitrary files via a .. (dot dot) in a crafted tar file.

References

Affected packages