Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31849
HistoryAug 29, 2021 - 9:06 a.m.

Directory Traversal

2021-08-2909:06:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.012 Low

EPSS

Percentile

85.3%

squashfs-tools is vulnerable to directory traversal. The vulnerability exists due to the reusing of filename which is in turn not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.