Absolute path traversal vulnerability in bsdcpio in libarchive 3.1.2 and earlier allows remote attackers to write to arbitrary files via a full pathname in an archive. http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-2304