Security Advisory
CVE-2010-4226
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
cpio, as used in build 2007.05.10, 2010.07.28, and possibly other versions, allows remote attackers to overwrite arbitrary files via a symlink within an RPM package archive.