Lucene search

K
freebsdFreeBSD27AA2253-4C72-11EC-B6B9-E86A64CACA56
HistoryNov 18, 2021 - 12:00 a.m.

py-matrix-synapse -- several vulnerabilities

2021-11-1800:00:00
vuxml.freebsd.org
13
patch for vulnerability
high severity
media repository
synapse installations
remote file download
directory storage
homeservers
synapse-s3-storage-provider
matrix-media-repo
unix

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

EPSS

0.001

Percentile

50.2%

Matrix developers report:

This release patches one high severity issue affecting
Synapse installations 1.47.0 and earlier using the media repository.
An attacker could cause these Synapses to download a remote file
and store it in a directory outside the media repository.
Note that:

This only affects homeservers using Synapse’s built-in media
repository, as opposed to synapse-s3-storage-provider or
matrix-media-repo.
Attackers cannot control the exact name or destination of the
stored file.

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

EPSS

0.001

Percentile

50.2%