Lucene search

K

UBI Reader Security Vulnerabilities

cve
cve

CVE-2023-0591

ubireader_extract_files is vulnerable to path traversal when run against specifically crafted UBIFS files, allowing the attacker to overwrite files outside of the extraction directory (provided the process has write access to that file or directory). This is due to the fact that a node name...

5.5CVSS

5.3AI Score

0.001EPSS

2023-01-31 10:15 AM
78
cve
cve

CVE-2022-4572

A vulnerability, which was classified as problematic, has been found in UBI Reader up to 0.8.0. Affected by this issue is the function ubireader_extract_files of the file ubireader/ubifs/output.py of the component UBIFS File Handler. The manipulation leads to path traversal. The attack may be...

7.1CVSS

6.8AI Score

0.001EPSS

2022-12-17 02:15 AM
45