vulnerability

Gentoo Linux: CVE-2016-6321: Tar: Extract pathname bypass

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:P/A:N)
Published
Dec 9, 2016
Added
Oct 30, 2017
Modified
Aug 13, 2025

Description

The attacker can create a crafted tar archive that, if extracted by the
victim, replaces files and directories the victim has access to in the
target directory, regardless of the path name(s) specified on the command
line.

Solution

gentoo-linux-upgrade-app-arch-tar
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.