CVE-2005-2541: tar: does not properly warn the user when extracting setuid or setgid files

Severity: Critical

CVSS Score: 7

Tar 1.15.1 does not properly warn the user when extracting setuid or setgid files, which may allow local users or remote attackers to gain privileges.