Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2020-28949

Опубликовано: 19 нояб. 2020
Источник: redhat
CVSS3: 7.1

Описание

Archive_Tar through 1.4.10 has :// filename sanitization only to address phar attacks, and thus any other stream-wrapper attack (such as file:// to overwrite files) can still succeed.

A flaw was found in the Archive_Tar package. PEAR Archive_Tar could allow a local authenticated attacker to bypass security restrictions caused by a stream-wrapper attack. An attacker can overwrite arbitrary files on the system using a specially-crafted tar archive.

Отчет

PHP 7.2, 7.3 and 7.4 are all deprecated. There would be no patches made available for php-pear.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6php-pearOut of support scope
Red Hat Enterprise Linux 8php:7.2/php-pearWill not fix
Red Hat Enterprise Linux 8php:7.3/php-pearWill not fix
Red Hat Software Collectionsrh-php73-php-pearWill not fix
Red Hat Enterprise Linux 7php-pearFixedRHSA-2022:734002.11.2022
Red Hat Enterprise Linux 8phpFixedRHSA-2022:654215.09.2022
Red Hat Enterprise Linux 8.4 Extended Update SupportphpFixedRHSA-2022:654115.09.2022

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=1910323Archive_Tar: improper filename sanitization leads to file overwrites

7.1 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 4 лет назад

Archive_Tar through 1.4.10 has :// filename sanitization only to address phar attacks, and thus any other stream-wrapper attack (such as file:// to overwrite files) can still succeed.

CVSS3: 7.8
nvd
больше 4 лет назад

Archive_Tar through 1.4.10 has :// filename sanitization only to address phar attacks, and thus any other stream-wrapper attack (such as file:// to overwrite files) can still succeed.

CVSS3: 7.8
debian
больше 4 лет назад

Archive_Tar through 1.4.10 has :// filename sanitization only to addre ...

CVSS3: 7.8
github
около 4 лет назад

Multiple vulnerabilities through filename manipulation in Archive_Tar

CVSS3: 8.8
fstec
больше 4 лет назад

Уязвимость класса Archive_Tar библиотеки PHP классов PEAR, позволяющая нарушителю выполнить перезапись защищаемых файлов

7.1 High

CVSS3

Уязвимость CVE-2020-28949