IBM / lmctl

Cloud Pak for Network Automation (CP4NA) (previously ALM/TNCO) command line tool
Apache License 2.0
4 stars 19 forks source link

CVE-2007-4559 Directory traversal vulnerability in the extract and extractall functions in the tarfile module in Python allows user-assisted remote attackers to overwrite arbitrary files #168

Closed dvaccarosenna closed 1 year ago

dvaccarosenna commented 1 year ago

CVE-2007-4559.

Use of tar extract and extractall should protect from this vulnerability

dvaccarosenna commented 1 year ago

Fixed by #165