Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-893h-35v4-mxqx

Опубликовано: 20 апр. 2021
Источник: github
Github: Прошло ревью
CVSS4: 8.5
CVSS3: 7.8

Описание

Path Traversal in Ansible

A flaw was found in Ansible 2.7.17 and prior, 2.8.9 and prior, and 2.9.6 and prior when using the Extract-Zip function from the win_unzip module as the extracted file(s) are not checked if they belong to the destination folder. An attacker could take advantage of this flaw by crafting an archive anywhere in the file system, using a path traversal. This issue is fixed in 2.10.

Пакеты

Наименование

ansible

pip
Затронутые версииВерсия исправления

>= 2.8.0a1, < 2.8.9

2.8.9

Наименование

ansible

pip
Затронутые версииВерсия исправления

>= 2.9.0a1, < 2.9.6

2.9.6

Наименование

ansible

pip
Затронутые версииВерсия исправления

< 2.7.17

2.7.17

EPSS

Процентиль: 31%
0.00119
Низкий

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 6 лет назад

A flaw was found in Ansible 2.7.17 and prior, 2.8.9 and prior, and 2.9.6 and prior when using the Extract-Zip function from the win_unzip module as the extracted file(s) are not checked if they belong to the destination folder. An attacker could take advantage of this flaw by crafting an archive anywhere in the file system, using a path traversal. This issue is fixed in 2.10.

CVSS3: 7.5
redhat
почти 6 лет назад

A flaw was found in Ansible 2.7.17 and prior, 2.8.9 and prior, and 2.9.6 and prior when using the Extract-Zip function from the win_unzip module as the extracted file(s) are not checked if they belong to the destination folder. An attacker could take advantage of this flaw by crafting an archive anywhere in the file system, using a path traversal. This issue is fixed in 2.10.

CVSS3: 7.5
nvd
почти 6 лет назад

A flaw was found in Ansible 2.7.17 and prior, 2.8.9 and prior, and 2.9.6 and prior when using the Extract-Zip function from the win_unzip module as the extracted file(s) are not checked if they belong to the destination folder. An attacker could take advantage of this flaw by crafting an archive anywhere in the file system, using a path traversal. This issue is fixed in 2.10.

CVSS3: 7.5
debian
почти 6 лет назад

A flaw was found in Ansible 2.7.17 and prior, 2.8.9 and prior, and 2.9 ...

CVSS3: 7.5
fstec
почти 6 лет назад

Уязвимость модуля win_unzip системы управления конфигурациями Ansible, связанная с неверным ограничением имени пути к каталогу с ограниченным доступом, позволяющая нарушителю оказать воздействие на конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 31%
0.00119
Низкий

8.5 High

CVSS4

7.8 High

CVSS3

Дефекты

CWE-22