|
PEAR Archive_Tar contains a flaw that may allow a malicious user to overwrite arbitrary files. The issue is triggered when a PHP script unarchives a crafted tar file. It is possible that the flaw may allow the overwriting of any file for which the web process has write permission, resulting in a loss of integrity.
|