CVE-2015-1395: Path Traversal
Directory traversal vulnerability in GNU patch versions which support Git-style patching before 2.7.3 allows remote attackers to write to arbitrary files with the permissions of the target user via a .. (dot dot) in a diff file name.
Other sources
It was reported [1] that the versions of the patch utility that support Git-style patches are vulnerable to a directory traversal flaw. This could allow an attacker to overwrite arbitrary files by applying a specially crafted patch, with the privileges of the user running patch. A reproducer for this issue is available in [1].
Upstream bugreport: http://savannah.gnu.org/bugs/?44059
[1]: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=775873
— Red Hat
Affected Software
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2015-1395?
CVE-2015-1395 is considered a high severity vulnerability due to its impact on file system integrity.
How do I fix CVE-2015-1395?
To fix CVE-2015-1395, upgrade GNU patch to version 2.7.3 or higher.
What are the affected software versions for CVE-2015-1395?
The affected software versions for CVE-2015-1395 include GNU patch versions before 2.7.3.
Can CVE-2015-1395 be exploited remotely?
Yes, CVE-2015-1395 can be exploited remotely if a user processes a malicious diff file.
What environments are vulnerable to CVE-2015-1395?
Environments using vulnerable versions of GNU patch, such as Debian, Red Hat, Ubuntu, and Fedora, are susceptible to CVE-2015-1395.