5
CVSSv2

CVE-2015-1191

Published: 21/01/2015 Updated: 03/12/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple directory traversal vulnerabilities in pigz 2.3.1 allow remote malicious users to write to arbitrary files via a (1) full pathname or (2) .. (dot dot) in an archive.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zlib pigz 2.3.1

Vendor Advisories

Debian Bug report logs - #774978 pigz: CVE-2015-1191: directory traversal vulnerability Package: pigz; Maintainer for pigz is Eduard Bloch <blade@debianorg>; Source for pigz is src:pigz (PTS, buildd, popcon) Reported by: Alexander Cherepanov <cherepan@mccmeru> Date: Fri, 9 Jan 2015 16:42:02 UTC Severity: normal T ...
Multiple directory traversal vulnerabilities in pigz 231 allow remote attackers to write to arbitrary files via a (1) full pathname or (2) (dot dot) in an archive ...