Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 13

Количество 13

ubuntu логотип

CVE-2021-40153

почти 5 лет назад

squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2021-40153

почти 7 лет назад

squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2021-40153

почти 5 лет назад

squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.

CVSS3: 8.1
EPSS: Низкий
msrc логотип

CVE-2021-40153

больше 4 лет назад

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2021-40153

почти 5 лет назад

squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the file ...

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-98f5-57cr-27p7

около 4 лет назад

squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.

CVSS3: 8.1
EPSS: Низкий
fstec логотип

BDU:2021-05217

почти 7 лет назад

Уязвимость функции squashfs_opendir компонента unsquash-1.c набора инструментов для создания и извлечения файловых систем Squashfs Squashfs-Tools, связанная с недостатками ограничения имени пути к каталогу, позволяющая нарушителю нарушить целостность данных, а также вызвать отказ в обслуживании

CVSS3: 8.1
EPSS: Низкий
rocky логотип

RLSA-2024:3139

около 2 лет назад

Moderate: squashfs-tools security update

EPSS: Низкий
rocky логотип

RLSA-2024:2396

около 1 года назад

Moderate: squashfs-tools security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-3139

около 2 лет назад

ELSA-2024-3139: squashfs-tools security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-2396

больше 2 лет назад

ELSA-2024-2396: squashfs-tools security update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4591-1

больше 2 лет назад

Security update for squashfs

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2023:4424-1

больше 2 лет назад

Security update for squashfs

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-40153

squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.

CVSS3: 8.1
3%
Низкий
почти 5 лет назад
redhat логотип
CVE-2021-40153

squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.

CVSS3: 8.1
3%
Низкий
почти 7 лет назад
nvd логотип
CVE-2021-40153

squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.

CVSS3: 8.1
3%
Низкий
почти 5 лет назад
msrc логотип
CVSS3: 8.1
3%
Низкий
больше 4 лет назад
debian логотип
CVE-2021-40153

squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the file ...

CVSS3: 8.1
3%
Низкий
почти 5 лет назад
github логотип
GHSA-98f5-57cr-27p7

squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.

CVSS3: 8.1
3%
Низкий
около 4 лет назад
fstec логотип
BDU:2021-05217

Уязвимость функции squashfs_opendir компонента unsquash-1.c набора инструментов для создания и извлечения файловых систем Squashfs Squashfs-Tools, связанная с недостатками ограничения имени пути к каталогу, позволяющая нарушителю нарушить целостность данных, а также вызвать отказ в обслуживании

CVSS3: 8.1
3%
Низкий
почти 7 лет назад
rocky логотип
RLSA-2024:3139

Moderate: squashfs-tools security update

около 2 лет назад
rocky логотип
RLSA-2024:2396

Moderate: squashfs-tools security update

около 1 года назад
oracle-oval логотип
ELSA-2024-3139

ELSA-2024-3139: squashfs-tools security update (MODERATE)

около 2 лет назад
oracle-oval логотип
ELSA-2024-2396

ELSA-2024-2396: squashfs-tools security update (MODERATE)

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:4591-1

Security update for squashfs

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2023:4424-1

Security update for squashfs

больше 2 лет назад

Уязвимостей на страницу