LinuxBot Member Joined Apr 25, 2017 Messages 5,954 Reaction score 80 Credits -1,257 Nov 12, 2021 #1 It was discovered that the symlink extraction protections in node-tar, a Tar archives module for Node.js could by bypassed; allowing a malicious Tar archive to symlink into an arbitrary location. Continue reading...
It was discovered that the symlink extraction protections in node-tar, a Tar archives module for Node.js could by bypassed; allowing a malicious Tar archive to symlink into an arbitrary location. Continue reading...