Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-79674

Опубликовано: 25 авг. 2026
Источник: redhat
CVSS3: 7.5

Описание

NLTK versions before 3.10.3 contain a path sandbox bypass vulnerability in corpus-reader constructors that allows attackers to read files outside the intended data root. Attackers can supply arbitrary corpus root paths to LinThesaurusCorpusReader and PanLexLiteCorpusReader constructors to access filesystem content and SQLite databases outside the pathsec sandbox boundary.

A flaw was found in NLTK. A path traversal vulnerability in corpus-reader constructors allows a remote attacker to bypass the intended data root sandbox. By supplying arbitrary corpus root paths to LinThesaurusCorpusReader and PanLexLiteCorpusReader constructors, an attacker can read files and access SQLite databases outside the security boundary, leading to information disclosure.

Отчет

A path traversal vulnerability exists in NLTK's corpus reader constructors LinThesaurusCorpusReader and PanLexLiteCorpusReader. The constructors fail to validate user-supplied corpus root paths against the pathsec sandbox boundary before accessing underlying filesystem directories and SQLite databases. An attacker capable of supplying arbitrary corpus root inputs can read files outside the intended data directory. Data exposure is restricted to files readable by the executing process user, and OS discretionary access controls or container isolation boundaries prevent privilege escalation beyond the application context.

Меры по смягчению последствий

Sanitize user input passed to LinThesaurusCorpusReader and PanLexLiteCorpusReader initialization arguments to enforce strict path validation against expected data root directories before loading corpus files or SQLite databases.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Exploit Intelligenceexploit-intelligence-tech-preview/vulnerability-analysis-rhel9Affected
Lightspeed Corelightspeed-core/lightspeed-stack-rhel9Affected
Lightspeed Corelightspeed-core/rag-tool-cpu-rhel9Affected
Lightspeed Corelightspeed-core/rag-tool-cuda-12.9-rhel9Affected
OpenShift Lightspeedopenshift-lightspeed/lightspeed-ocp-rag-rhel9Not affected
OpenShift Lightspeedopenshift-lightspeed/lightspeed-service-api-rhel9Affected
OpenShift Lightspeedopenshift-lightspeed-tech-preview/lightspeed-rag-tool-rhel9Not affected
Red Hat Ansible Automation Platform 2ansible-automation-platform-25/lightspeed-chatbot-rhel8Will not fix
Red Hat OpenShift AI (RHOAI)rhoai/odh-llama-stack-core-rhel9Affected
Red Hat OpenShift AI (RHOAI)rhoai/odh-ogx-core-rhel9Affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-22
https://bugzilla.redhat.com/show_bug.cgi?id=2523576nltk: NLTK: Information disclosure via path traversal in corpus-reader constructors

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 8.2
ubuntu
23 дня назад

NLTK versions before 3.10.3 contain a path sandbox bypass vulnerability in corpus-reader constructors that allows attackers to read files outside the intended data root. Attackers can supply arbitrary corpus root paths to LinThesaurusCorpusReader and PanLexLiteCorpusReader constructors to access filesystem content and SQLite databases outside the pathsec sandbox boundary.

CVSS3: 8.2
nvd
23 дня назад

NLTK versions before 3.10.3 contain a path sandbox bypass vulnerability in corpus-reader constructors that allows attackers to read files outside the intended data root. Attackers can supply arbitrary corpus root paths to LinThesaurusCorpusReader and PanLexLiteCorpusReader constructors to access filesystem content and SQLite databases outside the pathsec sandbox boundary.

CVSS3: 8.2
debian
23 дня назад

NLTK versions before 3.10.3 contain a path sandbox bypass vulnerabilit ...

github
9 дней назад

NLTK: Corpus Reader Sandbox Bypass

CVSS3: 8.2
fstec
около 1 месяца назад

Уязвимость компонента nltk.corpus.reader пакета библиотек для символьной и статистической обработки естественного языка NLTK, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

7.5 High

CVSS3