Solution
Please Install the Updated Packages.
Insight
The code in this component came from Avalon's Excalibur, but originally from Ant, as far as life in Apache goes. The tar package is originally Tim Endres' public domain package. The bzip2 package is based on the work done by Keiron Liddle. It has migrated via:
Ant ->
Avalon-Excalibur ->
Commons-IO ->
Commons-Compress.
Affected
apache-commons-compress on Fedora 16
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2012-2098 -
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
Related Vulnerabilities