cpan Archive-Tar 1.38

latest releases: 3.12, 3.10, 3.08...
18 years ago
  • Promote 1.37_01 to stable.

1.37_01 11/11/2007:
_ Address #30380: directory traversal vulnerability in Archive-Tar

  • Add $INSECURE_EXTRACT_MODE which defaults to 0, disallowing
    archives to extract files outside of cwd(). This is a backwards
    incompatible change from 1.36 and before.
  • Add a -I option to ptar to enable insecure extraction if needed

Don't miss a new Archive-Tar release

NewReleases is sending notifications on new releases.