Skip to content

Separate CVE for related symlink vulnerability? #41

@coolaj86

Description

@coolaj86

This CVE seems only to talk about maliciously crafted destination paths, and not maliciously crafted symlinks. Is there a separate CVE for that?

For example, I could extract a symlink evilEntry.txt => ../../../../etc/password to ./evilEntry.txt and then the next entry in the archive could be again evilEntry.txt, but this time as a file with the contents PWNed!, which would overwrite /etc/password.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions