CVE-2021-31272: Path Traversal
Published Jun 18, 2021
·Updated
SerenityOS before commit 3844e8569689dd476064a0759d704bc64fb3ca2c contains a directory traversal vulnerability in tar/unzip that may lead to command execution or privilege escalation.
Affected Software
1 affected component
SerenityOS SerenityOS<3844e8569689dd476064a0759d704bc64fb3ca2c
Remediation
Event History
Jun 18, 2021
CVE Published
via MITRE·09:50 PM
Data Sourced
via MITRE·09:50 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-31272?
CVE-2021-31272 is considered a high severity vulnerability due to its potential for command execution and privilege escalation.
2
How do I fix CVE-2021-31272?
To fix CVE-2021-31272, update SerenityOS to a version after commit 3844e8569689dd476064a0759d704bc64fb3ca2c.
3
What type of vulnerability is CVE-2021-31272?
CVE-2021-31272 is a directory traversal vulnerability found in tar/unzip within SerenityOS.
4
What could be the impact of exploiting CVE-2021-31272?
Exploiting CVE-2021-31272 may allow an attacker to execute arbitrary commands or escalate privileges on the affected system.
5
Which versions of SerenityOS are affected by CVE-2021-31272?
SerenityOS versions prior to commit 3844e8569689dd476064a0759d704bc64fb3ca2c are affected by CVE-2021-31272.