CVE-2017-1000026

Publication date

2017-07-13 20:00:00

Family

mitre

State

PUBLISHED

Description

Chef Softwares mixlib-archive versions 0.3.0 and older are vulnerable to a directory traversal attack allowing attackers to overwrite arbitrary files by using ".." in tar archive entries