Debian Security Advisory

tar -- GNU tar sometimes unintentionally creates setuid-root executables.

Date Reported:
06 Feb 1997
Affected Packages:
tar
Vulnerable:
Yes
Security database references:
No other external database security references currently available.
More information:
By default, there is no danger. But if the "nobody" user has uid 65535, this security problem can be exploited.
Fixed in:
All - (in release 1.3) 1.11.8-8