Show plain JSON{"dataType": "CVE_RECORD", "dataVersion": "5.1", "cveMetadata": {"state": "PUBLISHED", "cveId": "CVE-2015-1197", "assignerOrgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca", "assignerShortName": "mitre", "dateUpdated": "2024-08-06T04:33:20.813Z", "dateReserved": "2015-01-18T00:00:00", "datePublished": "2015-02-19T00:00:00"}, "containers": {"cna": {"providerMetadata": {"orgId": "8254265b-2729-46b6-b9e3-3dfca2d5bfca", "shortName": "mitre", "dateUpdated": "2023-12-27T15:06:17.838860"}, "descriptions": [{"lang": "en", "value": "cpio 2.11, when using the --no-absolute-filenames option, allows local users to write to arbitrary files via a symlink attack on a file in an archive."}], "affected": [{"vendor": "n/a", "product": "n/a", "versions": [{"version": "n/a", "status": "affected"}]}], "references": [{"name": "71914", "tags": ["vdb-entry"], "url": "http://www.securityfocus.com/bid/71914"}, {"name": "MDVSA-2015:066", "tags": ["vendor-advisory"], "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:066"}, {"name": "[oss-security] 20150118 Re: CVE Request: cpio -- directory traversal", "tags": ["mailing-list"], "url": "http://www.openwall.com/lists/oss-security/2015/01/18/7"}, {"name": "USN-2906-1", "tags": ["vendor-advisory"], "url": "http://www.ubuntu.com/usn/USN-2906-1"}, {"url": "http://advisories.mageia.org/MGASA-2015-0080.html"}, {"name": "[oss-security] 20150108 Directory traversals in cpio and friends?", "tags": ["mailing-list"], "url": "http://www.openwall.com/lists/oss-security/2015/01/07/5"}, {"url": "https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=774669"}, {"name": "[Bug-cpio] 20150108 cpio: directory traversal vulnerability via symlinks", "tags": ["mailing-list"], "url": "https://lists.gnu.org/archive/html/bug-cpio/2015-01/msg00000.html"}, {"url": "http://packetstormsecurity.com/files/169458/Zimbra-Collaboration-Suite-TAR-Path-Traversal.html"}, {"name": "[oss-security] 20231221 Security vulnerability in Debian's cpio 2.13", "tags": ["mailing-list"], "url": "http://www.openwall.com/lists/oss-security/2023/12/21/8"}, {"name": "[oss-security] 20231227 xarchiver: Path traversal with crafted cpio archives", "tags": ["mailing-list"], "url": "http://www.openwall.com/lists/oss-security/2023/12/27/1"}], "problemTypes": [{"descriptions": [{"type": "text", "lang": "en", "description": "n/a"}]}], "datePublic": "2015-01-06T00:00:00"}, "adp": [{"providerMetadata": {"orgId": "af854a3a-2127-422b-91ae-364da2661108", "shortName": "CVE", "dateUpdated": "2024-08-06T04:33:20.813Z"}, "title": "CVE Program Container", "references": [{"name": "71914", "tags": ["vdb-entry", "x_transferred"], "url": "http://www.securityfocus.com/bid/71914"}, {"name": "MDVSA-2015:066", "tags": ["vendor-advisory", "x_transferred"], "url": "http://www.mandriva.com/security/advisories?name=MDVSA-2015:066"}, {"name": "[oss-security] 20150118 Re: CVE Request: cpio -- directory traversal", "tags": ["mailing-list", "x_transferred"], "url": "http://www.openwall.com/lists/oss-security/2015/01/18/7"}, {"name": "USN-2906-1", "tags": ["vendor-advisory", "x_transferred"], "url": "http://www.ubuntu.com/usn/USN-2906-1"}, {"url": "http://advisories.mageia.org/MGASA-2015-0080.html", "tags": ["x_transferred"]}, {"name": "[oss-security] 20150108 Directory traversals in cpio and friends?", "tags": ["mailing-list", "x_transferred"], "url": "http://www.openwall.com/lists/oss-security/2015/01/07/5"}, {"url": "https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=774669", "tags": ["x_transferred"]}, {"name": "[Bug-cpio] 20150108 cpio: directory traversal vulnerability via symlinks", "tags": ["mailing-list", "x_transferred"], "url": "https://lists.gnu.org/archive/html/bug-cpio/2015-01/msg00000.html"}, {"url": "http://packetstormsecurity.com/files/169458/Zimbra-Collaboration-Suite-TAR-Path-Traversal.html", "tags": ["x_transferred"]}, {"name": "[oss-security] 20231221 Security vulnerability in Debian's cpio 2.13", "tags": ["mailing-list", "x_transferred"], "url": "http://www.openwall.com/lists/oss-security/2023/12/21/8"}, {"name": "[oss-security] 20231227 xarchiver: Path traversal with crafted cpio archives", "tags": ["mailing-list", "x_transferred"], "url": "http://www.openwall.com/lists/oss-security/2023/12/27/1"}]}]}}