Lucene search

K
cveRedhatCVE-2020-27833
HistoryMay 14, 2021 - 9:15 p.m.

CVE-2020-27833

2021-05-1421:15:07
CWE-20
CWE-59
redhat
web.nvd.nist.gov
69
8
cve-2020-27833
zip slip
oc binary
container image
vulnerability
openshift-clients
arbitrary file write
symbolic links

CVSS2

4.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:S/C:P/I:P/A:P

CVSS3

7.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

38.8%

A Zip Slip vulnerability was found in the oc binary in openshift-clients where an arbitrary file write is achieved by using a specially crafted raw container image (.tar file) which contains symbolic links. The vulnerability is limited to the command oc image extract. If a symbolic link is first created pointing within the tarball, this allows further symbolic links to bypass the existing path check. This flaw allows the tarball to create links outside the tarball’s parent directory, allowing for executables or configuration files to be overwritten, resulting in arbitrary code execution. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability. Versions up to and including openshift-clients-4.7.0-202104250659.p0.git.95881af are affected.

Affected configurations

Nvd
Vulners
Node
redhatopenshift_container_platformRange≀4.7
VendorProductVersionCPE
redhatopenshift_container_platform*cpe:2.3:a:redhat:openshift_container_platform:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "product": "openshift/oc",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "up to & including openshift-clients-4.7.0-202104250659.p0.git.95881af"
      }
    ]
  }
]

Social References

More

CVSS2

4.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:S/C:P/I:P/A:P

CVSS3

7.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

38.8%

Related for CVE-2020-27833