Количество 13
Количество 13
CVE-2021-40153
squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.
CVE-2021-40153
squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.
CVE-2021-40153
squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.
CVE-2021-40153
CVE-2021-40153
squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the file ...
GHSA-98f5-57cr-27p7
squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.
BDU:2021-05217
Уязвимость функции squashfs_opendir компонента unsquash-1.c набора инструментов для создания и извлечения файловых систем Squashfs Squashfs-Tools, связанная с недостатками ограничения имени пути к каталогу, позволяющая нарушителю нарушить целостность данных, а также вызвать отказ в обслуживании
RLSA-2024:3139
Moderate: squashfs-tools security update
RLSA-2024:2396
Moderate: squashfs-tools security update
ELSA-2024-3139
ELSA-2024-3139: squashfs-tools security update (MODERATE)
ELSA-2024-2396
ELSA-2024-2396: squashfs-tools security update (MODERATE)
SUSE-SU-2023:4591-1
Security update for squashfs
SUSE-SU-2023:4424-1
Security update for squashfs
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-40153 squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination. | CVSS3: 8.1 | 1% Низкий | больше 4 лет назад | |
CVE-2021-40153 squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination. | CVSS3: 8.1 | 1% Низкий | больше 6 лет назад | |
CVE-2021-40153 squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination. | CVSS3: 8.1 | 1% Низкий | больше 4 лет назад | |
CVSS3: 8.1 | 1% Низкий | около 4 лет назад | ||
CVE-2021-40153 squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the file ... | CVSS3: 8.1 | 1% Низкий | больше 4 лет назад | |
GHSA-98f5-57cr-27p7 squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination. | CVSS3: 8.1 | 1% Низкий | больше 3 лет назад | |
BDU:2021-05217 Уязвимость функции squashfs_opendir компонента unsquash-1.c набора инструментов для создания и извлечения файловых систем Squashfs Squashfs-Tools, связанная с недостатками ограничения имени пути к каталогу, позволяющая нарушителю нарушить целостность данных, а также вызвать отказ в обслуживании | CVSS3: 8.1 | 1% Низкий | больше 6 лет назад | |
RLSA-2024:3139 Moderate: squashfs-tools security update | больше 1 года назад | |||
RLSA-2024:2396 Moderate: squashfs-tools security update | 9 месяцев назад | |||
ELSA-2024-3139 ELSA-2024-3139: squashfs-tools security update (MODERATE) | больше 1 года назад | |||
ELSA-2024-2396 ELSA-2024-2396: squashfs-tools security update (MODERATE) | почти 2 года назад | |||
SUSE-SU-2023:4591-1 Security update for squashfs | около 2 лет назад | |||
SUSE-SU-2023:4424-1 Security update for squashfs | около 2 лет назад |
Уязвимостей на страницу