Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2021-32610
In Archive_Tar before 1.4.14, symlinks can refer to targets outside of the extracted archive, a different vulnerability than CVE-2020-36193.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.007
EPSS Ranking
71.3%
CVSS Severity
CVSS v3 Score
7.1
CVSS v2 Score
3.6
References
https://github.com/pear/Archive_Tar/commit/7789ebb2f34f9e4adb3a4152ad0d1548930a9755
https://github.com/pear/Archive_Tar/commit/b5832439b1f37331fb4f87e67fe4f
https://github.com/pear/Archive_Tar/releases/tag/1.4.14
https://lists.debian.org/debian-lts-announce/2021/07/msg00023.html
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/42GPGVVFTLJYAKRI75IVB5R45NYQGEUR/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CAODVMHGL5MHQWQAQTXQ7G7OE3VQZ7LS/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/G5LTY6COQYNMMHQJ3QIOJHEWCKD4XDFH/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VJQQYDAOWHD6RDITDRPHFW7WY6BS3V5N/
https://www.drupal.org/sa-core-2021-004
https://github.com/pear/Archive_Tar/commit/7789ebb2f34f9e4adb3a4152ad0d1548930a9755
https://github.com/pear/Archive_Tar/commit/b5832439b1f37331fb4f87e67fe4f
https://github.com/pear/Archive_Tar/releases/tag/1.4.14
https://lists.debian.org/debian-lts-announce/2021/07/msg00023.html
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/42GPGVVFTLJYAKRI75IVB5R45NYQGEUR/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CAODVMHGL5MHQWQAQTXQ7G7OE3VQZ7LS/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/G5LTY6COQYNMMHQJ3QIOJHEWCKD4XDFH/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VJQQYDAOWHD6RDITDRPHFW7WY6BS3V5N/
https://www.drupal.org/sa-core-2021-004
Products affected by CVE-2021-32610
Php
»
Archive Tar
»
Version:
1.3.11
cpe:2.3:a:php:archive_tar:1.3.11
Php
»
Archive Tar
»
Version:
1.3.12
cpe:2.3:a:php:archive_tar:1.3.12
Php
»
Archive Tar
»
Version:
1.3.13
cpe:2.3:a:php:archive_tar:1.3.13
Php
»
Archive Tar
»
Version:
1.3.14
cpe:2.3:a:php:archive_tar:1.3.14
Php
»
Archive Tar
»
Version:
1.3.15
cpe:2.3:a:php:archive_tar:1.3.15
Php
»
Archive Tar
»
Version:
1.3.16
cpe:2.3:a:php:archive_tar:1.3.16
Php
»
Archive Tar
»
Version:
1.4.0
cpe:2.3:a:php:archive_tar:1.4.0
Php
»
Archive Tar
»
Version:
1.4.1
cpe:2.3:a:php:archive_tar:1.4.1
Php
»
Archive Tar
»
Version:
1.4.10
cpe:2.3:a:php:archive_tar:1.4.10
Php
»
Archive Tar
»
Version:
1.4.11
cpe:2.3:a:php:archive_tar:1.4.11
Php
»
Archive Tar
»
Version:
1.4.12
cpe:2.3:a:php:archive_tar:1.4.12
Php
»
Archive Tar
»
Version:
1.4.2
cpe:2.3:a:php:archive_tar:1.4.2
Php
»
Archive Tar
»
Version:
1.4.3
cpe:2.3:a:php:archive_tar:1.4.3
Php
»
Archive Tar
»
Version:
1.4.4
cpe:2.3:a:php:archive_tar:1.4.4
Php
»
Archive Tar
»
Version:
1.4.5
cpe:2.3:a:php:archive_tar:1.4.5
Php
»
Archive Tar
»
Version:
1.4.6
cpe:2.3:a:php:archive_tar:1.4.6
Php
»
Archive Tar
»
Version:
1.4.7
cpe:2.3:a:php:archive_tar:1.4.7
Php
»
Archive Tar
»
Version:
1.4.8
cpe:2.3:a:php:archive_tar:1.4.8
Php
»
Archive Tar
»
Version:
1.4.9
cpe:2.3:a:php:archive_tar:1.4.9
Debian
»
Debian Linux
»
Version:
9.0
cpe:2.3:o:debian:debian_linux:9.0
Fedoraproject
»
Fedora
»
Version:
33
cpe:2.3:o:fedoraproject:fedora:33
Fedoraproject
»
Fedora
»
Version:
34
cpe:2.3:o:fedoraproject:fedora:34
Fedoraproject
»
Fedora
»
Version:
35
cpe:2.3:o:fedoraproject:fedora:35
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved