CVE-1999-0202

CVSS 2.0 Score 7.5 of 10 (high)

Details

Published Jan 1, 1997
Updated: Nov 20, 2024

Summary

CVE-1999-0202 is a vulnerability affecting the GNU tar command used in FTP sessions. This issue allows an attacker to inject and execute arbitrary commands during the tar extraction process. The vulnerability was discovered in 1999, and it can potentially lead to serious security consequences, including unauthorized system access or data theft. An attacker can exploit this vulnerability by sending specially crafted tarball files through FTP, which the vulnerable tar command processes without proper validation. It is essential for system administrators to update their tar packages to a non-vulnerable version to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share