GHSA-q7c2-6g86-6v93
GitHub Security Advisory
⚠ Unreviewed
MODERATE
Has CVE
Advisory Details
The build package before 20171128 did not check directory names during extraction of build results that allowed untrusted builds to write outside of the target system,allowing escape out of buildroots.
Related CVEs
Key Information
5.0
/10
Dataset
Last updated: September 14, 2025 6:31 AM
Data from GitHub Advisory Database. This information is provided for research and educational purposes.