CVE-2014-9983: Path Traversal
Published Dec 29, 2014
·Updated
Directory Traversal exists in RAR 4.x and 5.x because an unpack operation follows any symlinks, including symlinks contained in the archive. This allows remote attackers to write to arbitrary files via a crafted archive.
Affected Software
19 affected components
debian/rar<=2:4.2.0-1, <=2:5.2.1b2-1
RARLAB Rar=4.00
RARLAB Rar=4.01
RARLAB Rar=4.10
RARLAB Rar=4.11
RARLAB Rar=4.20
RARLAB Rar=5.00
RARLAB Rar=5.01
RARLAB Rar=5.10
RARLAB Rar=5.11
RARLAB Rar=5.20
RARLAB Rar=5.21
RARLAB Rar=5.30
RARLAB Rar=5.31
RARLAB Rar=5.40
RARLAB Rar=5.50
RARLAB Rar=5.50-beta1
RARLAB Rar=5.50-beta2
RARLAB Rar=5.50-beta3
Event History
Jun 4, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-9983?
CVE-2014-9983 is considered a critical vulnerability due to its potential to allow remote attackers to write to arbitrary files on the system.
2
How do I fix CVE-2014-9983?
To mitigate CVE-2014-9983, update RAR to the latest version that does not include this vulnerability.
3
Which versions are affected by CVE-2014-9983?
CVE-2014-9983 affects RAR versions 4.0 to 5.50 beta3.
4
What type of vulnerability is CVE-2014-9983?
CVE-2014-9983 is classified as a directory traversal vulnerability.
5
Can CVE-2014-9983 be exploited remotely?
Yes, CVE-2014-9983 can be exploited remotely via a crafted archive that contains symlinks.