File Roller CVE-2013-4668 Multiple Directory Traversal Vulnerabilities
BID:61008
Info
File Roller CVE-2013-4668 Multiple Directory Traversal Vulnerabilities
| Bugtraq ID: | 61008 |
| Class: | Input Validation Error |
| CVE: |
CVE-2013-4668 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 08 2013 12:00AM |
| Updated: | Apr 13 2015 10:17PM |
| Credit: | Yorick Koster |
| Vulnerable: |
Ubuntu Ubuntu Linux 13.04 Ubuntu Ubuntu Linux 12.10 i386 Ubuntu Ubuntu Linux 12.10 amd64 S.u.S.E. openSUSE 12.3 Paolo Bacchilega File Roller 3.9.2 Paolo Bacchilega File Roller 3.9.1 Paolo Bacchilega File Roller 3.8.2 Paolo Bacchilega File Roller 3.8.1 Paolo Bacchilega File Roller 3.8 Paolo Bacchilega File Roller 3.6.3 Paolo Bacchilega File Roller 3.6.2 Paolo Bacchilega File Roller 3.6.1 Paolo Bacchilega File Roller 3.6 |
| Not Vulnerable: |
Paolo Bacchilega File Roller 3.9.3 Paolo Bacchilega File Roller 3.8.3 Paolo Bacchilega File Roller 3.6.4 |
Discussion
File Roller CVE-2013-4668 Multiple Directory Traversal Vulnerabilities
File Roller is prone to multiple directory-traversal vulnerabilities because it fails to properly sanitize user-supplied data.
Attackers can exploit these vulnerabilities to overwrite arbitrary files in the context of the user running the vulnerable application.
Following versions are vulnerable:
File Roller 3.6.0 through 3.6.3
File Roller 3.8.0 through 3.8.2
File Roller 3.9.1 and 3.9.2
File Roller is prone to multiple directory-traversal vulnerabilities because it fails to properly sanitize user-supplied data.
Attackers can exploit these vulnerabilities to overwrite arbitrary files in the context of the user running the vulnerable application.
Following versions are vulnerable:
File Roller 3.6.0 through 3.6.3
File Roller 3.8.0 through 3.8.2
File Roller 3.9.1 and 3.9.2
Exploit / POC
File Roller CVE-2013-4668 Multiple Directory Traversal Vulnerabilities
Attackers must trick a victim into opening a malicious archive to exploit these issues.
Attackers must trick a victim into opening a malicious archive to exploit these issues.
Solution / Fix
File Roller CVE-2013-4668 Multiple Directory Traversal Vulnerabilities
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
File Roller CVE-2013-4668 Multiple Directory Traversal Vulnerabilities
References:
References:
- #2013-001 File Roller path sanitization errors (oCERT.org)
- File Roller Homepage (Paolo Bacchilega)
- libarchive: sanitize filenames before extracting (Paolo Bacchilega)