Directory traversal vulnerability in FastJar 0.93, as used in Gnu GCC 4.1.1 and earlier, and 3.4.6 and earlier, allows user-assisted attackers to overwrite arbitrary files via a .jar file containing filenames with ../ sequences.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Fastjar | Fastjar | 0.93 (including) | 0.93 (including) |
| Red Hat Enterprise Linux 3 | RedHat | gcc-0:3.2.3-59 | * |
| Red Hat Enterprise Linux 4 | RedHat | gcc-0:3.4.6-8 | * |
| Gcc-4.1 | Ubuntu | edgy | * |
| Gcc-4.1 | Ubuntu | feisty | * |
| Gcc-4.1 | Ubuntu | gutsy | * |
| Gcc-4.1 | Ubuntu | hardy | * |
| Gcc-4.1 | Ubuntu | intrepid | * |
| Gcc-4.1 | Ubuntu | jaunty | * |
| Gcc-4.1 | Ubuntu | karmic | * |
| Gcc-4.1 | Ubuntu | lucid | * |
| Gcc-4.1 | Ubuntu | maverick | * |
| Gcc-4.2 | Ubuntu | gutsy | * |
| Gcc-4.2 | Ubuntu | hardy | * |
| Gcc-4.2 | Ubuntu | intrepid | * |
| Gcc-4.2 | Ubuntu | jaunty | * |
| Gcc-4.2 | Ubuntu | karmic | * |
| Gcj-4.1 | Ubuntu | dapper | * |
| Gcj-4.1 | Ubuntu | edgy | * |
| Gcj-4.1 | Ubuntu | feisty | * |
| Gcj-4.1 | Ubuntu | gutsy | * |
| Gcj-4.1 | Ubuntu | hardy | * |
| Gcj-4.2 | Ubuntu | gutsy | * |
| Gcj-4.2 | Ubuntu | hardy | * |
| Gcj-4.2 | Ubuntu | intrepid | * |
| Gcj-4.2 | Ubuntu | jaunty | * |
| Gdc-4.1 | Ubuntu | gutsy | * |
| Gdc-4.1 | Ubuntu | hardy | * |
| Gdc-4.1 | Ubuntu | intrepid | * |
| Gdc-4.1 | Ubuntu | jaunty | * |
| Gdc-4.1 | Ubuntu | karmic | * |
| Gdc-4.1 | Ubuntu | lucid | * |
| Gnat-4.1 | Ubuntu | edgy | * |
| Gnat-4.1 | Ubuntu | feisty | * |
| Gnat-4.1 | Ubuntu | gutsy | * |
| Gnat-4.1 | Ubuntu | hardy | * |
| Gnat-4.1 | Ubuntu | intrepid | * |
| Gnat-4.2 | Ubuntu | gutsy | * |
| Gnat-4.2 | Ubuntu | hardy | * |
| Gpc-4.1 | Ubuntu | gutsy | * |
| Gpc-4.1 | Ubuntu | hardy | * |
| Gpc-4.1 | Ubuntu | intrepid | * |
| Gpc-4.1 | Ubuntu | jaunty | * |
| Gpc-4.1 | Ubuntu | karmic | * |
| Gpc-4.1 | Ubuntu | lucid | * |
| Gpc-4.1 | Ubuntu | maverick | * |