Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-898j-5cc8-cmf5

Опубликовано: 16 окт. 2018
Источник: github
Github: Прошло ревью
CVSS3: 5.5

Описание

ZipSlip in org.apache.storm:storm-core

Apache Storm version 1.0.6 and earlier, 1.2.1 and earlier, and version 1.1.2 and earlier expose an arbitrary file write vulnerability, that can be achieved using a specially crafted zip archive (affects other archives as well, bzip2, tar, xz, war, cpio, 7z), that holds path traversal filenames. So when the filename gets concatenated to the target extraction directory, the final path ends up outside of the target folder.

Пакеты

Наименование

org.apache.storm:storm-core

maven
Затронутые версииВерсия исправления

>= 1.1.0, < 1.1.3

1.1.3

Наименование

org.apache.storm:storm-core

maven
Затронутые версииВерсия исправления

>= 1.2.0, < 1.2.2

1.2.2

Наименование

org.apache.storm:storm-core

maven
Затронутые версииВерсия исправления

< 1.0.7

1.0.7

EPSS

Процентиль: 94%
0.1535
Средний

5.5 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 5.5
nvd
больше 7 лет назад

Apache Storm version 1.0.6 and earlier, 1.2.1 and earlier, and version 1.1.2 and earlier expose an arbitrary file write vulnerability, that can be achieved using a specially crafted zip archive (affects other archives as well, bzip2, tar, xz, war, cpio, 7z), that holds path traversal filenames. So when the filename gets concatenated to the target extraction directory, the final path ends up outside of the target folder.

EPSS

Процентиль: 94%
0.1535
Средний

5.5 Medium

CVSS3

Дефекты

CWE-22