Launchpad.net

CVE 2015-0857

Cool Projects TarDiff allows remote attackers to execute arbitrary commands via shell metacharacters in the name of a (1) tar file or (2) file within a tar file.

See the CVE page on Mitre.org for more details.

References