A flaw was discovered in the mholt/archiver package. This flaw allows an attacker to create a specially crafted tar file, which, when unpacked, may allow access to restricted files or directories. This issue can allow the creation or overwriting of files with the user's or application's privileges using the library.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
GHSA-rhh4-rh7c-7r5v | Archiver Path Traversal vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 25 Apr 2025 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Mholt
Mholt archiver Redhat openshift Container Platform |
|
CPEs | cpe:2.3:a:mholt:archiver:*:*:*:*:*:*:*:* cpe:2.3:a:redhat:advanced_cluster_security:3.0:*:*:*:*:*:*:* cpe:2.3:a:redhat:openshift_container_platform:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Mholt
Mholt archiver Redhat openshift Container Platform |
Tue, 11 Mar 2025 04:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:/a:redhat:openshift:4.18::el9 | |
References |
|
Fri, 10 Jan 2025 23:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2025-10-10T12:27:26.892Z
Reserved: 2024-01-10T18:18:28.288Z
Link: CVE-2024-0406

Updated: 2024-08-01T18:04:49.645Z

Status : Analyzed
Published: 2024-04-06T17:15:07.127
Modified: 2025-04-25T15:02:44.233
Link: CVE-2024-0406


No data.