Skip to navigation

Security Advisory unzip security update

Advisory: RHSA-2002:138-06
Type: Security Advisory
Severity: Low
Issued on: 2002-07-03
Last updated on: 2002-10-01
Affected Products: Red Hat Enterprise Linux AS (v. 2.1)
CVEs (cve.mitre.org): CVE-2001-1267
CVE-2001-1268
CVE-2001-1269
CVE-2002-0399
CVE-2002-1216

Details

The unzip and tar utilities contain vulnerabilities which can allow
arbitrary files to be overwritten during archive extraction.

The unzip and tar utilities are used for dealing with archives, which
are multiple files stored inside of a single file.

A directory traversal vulnerability in unzip version 5.42 and earlier,
as well as GNU tar 1.13.19 and earlier, allows attackers to overwrite
arbitrary files during archive extraction via a ".." (dot dot) in an
extracted filename (CAN-2001-1267, CAN-2001-1268). In addition, unzip
version 5.42 and earlier also allows attackers to overwrite arbitrary files
during archive extraction via filenames in the archive that begin with the
"/" (slash) character (CAN-2001-1269).

During testing of the fix to GNU tar, we discovered that GNU tar 1.13.25
was still vulnerable to a modified version of the same problem. Red Hat has
provided a patch to tar 1.3.25 to correct this problem (CAN-2002-0399).

Users of unzip and tar are advised to upgrade to these errata packages,
containing unzip version 5.50 and a patched version of GNU tar 1.13.25,
which are not vulnerable to these issues.


Solution

Before applying this update, make sure all previously released errata
relevant to your system have been applied.

Please note that this update is available via Red Hat Network. To use Red
Hat Network, launch the Red Hat Update Agent with the following command:

up2date

This will start an interactive process that will result in the appropriate
RPMs being upgraded on your system.

Updated packages

Red Hat Enterprise Linux AS (v. 2.1)

SRPMS:
tar-1.13.25-4.AS21.0.src.rpm
File outdated by:  RHSA-2006:0749
    MD5: cf8671103f4a4566834385fdb27dfd95
tar-1.13.25-4.AS21.0.src.rpm
File outdated by:  RHSA-2006:0749
    MD5: cf8671103f4a4566834385fdb27dfd95
unzip-5.50-2.src.rpm
File outdated by:  RHSA-2008:0196
    MD5: 2c1387cc558515919e2585b5708fd219
 
IA-32:
tar-1.13.25-4.AS21.0.i386.rpm
File outdated by:  RHSA-2006:0749
    MD5: 213a7270f42cbe1165b51c6abb41c937
unzip-5.50-2.i386.rpm
File outdated by:  RHSA-2008:0196
    MD5: 877f4fda6198e604b539fb85664a3aad
 

References


Keywords

path, tar, unpack, unzip


These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are available from:
https://www.redhat.com/security/team/key/#package

The Red Hat security contact is secalert@redhat.com. More contact details at http://www.redhat.com/security/team/contact/