CVE-2001-1267

GNU tar <1.13.19 - Path Traversal

Title source: llm

Description

Directory traversal vulnerability in GNU tar 1.13.19 and earlier allows local users to overwrite arbitrary files during archive extraction via a tar file whose filenames contain a .. (dot dot).

Scores

EPSS 0.0013
EPSS Percentile 31.8%

Classification

Status draft

Affected Products (1)

gnu/tar < 1.13.19

Timeline

Published Jul 12, 2001
Tracked Since Feb 18, 2026