CVE-2021-31566: High severity oracle libarchive vulnerability

Published Nov 17, 2021
·
Updated

An improper link resolution flaw can occur while extracting an archive leading to changing modes, times, access control lists, and flags of a file outside of the archive. An attacker may provide a malicious archive to a victim user, who would trigger this flaw when trying to extract the archive. A local attacker may use this flaw to gain more privileges in a system.

Other sources

Some modes, times, ACLs and file flags especially on directories are set on archivewriteclose() time. An archive can contain multiple entries with the same path. If a directory entry is marked for post-processing and a symlink entry with the same path "replaces" the directory with the symlink, the "fixup" postprocessing may alter the link target instead of the file itself.

Reference: https://github.com/libarchive/libarchive/issues/1566

Upstream patch: https://github.com/libarchive/libarchive/commit/b41daecb5ccb4c8e3b2c53fd6147109fc12c3043

Red Hat

Affected Software

35 affected componentsFixes available
redhat/libarchive<3.5.2
3.5.2
Libarchive libarchive<3.5.2
Fedoraproject Fedora=35
redhat Enterprise Linux=8.0
redhat Enterprise Linux Eus=8.6
redhat Enterprise Linux For Ibm Z Systems=8.0
redhat Enterprise Linux For Ibm Z Systems Eus=8.6
redhat Enterprise Linux For Power Little Endian=8.0
redhat Enterprise Linux For Power Little Endian Eus=8.6
redhat Enterprise Linux Server Aus=8.6
redhat Enterprise Linux Server For Power Little Endian Update Services For Sap Solutions=8.6
redhat Enterprise Linux Server Tus=8.6
All of the following
redhat Codeready Linux Builder
Any of the following
redhat Enterprise Linux=8.0
redhat Enterprise Linux Eus=8.6
redhat Enterprise Linux For Ibm Z Systems=8.0
redhat Enterprise Linux For Ibm Z Systems Eus=8.6
redhat Enterprise Linux For Power Little Endian=8.0
redhat Enterprise Linux For Power Little Endian Eus=8.6
Debian Debian Linux=10.0
Splunk Universal Forwarder>=8.2.0<8.2.12
Splunk Universal Forwarder>=9.0.0<9.0.6
Splunk Universal Forwarder=9.1.0
redhat Codeready Linux Builder
redhat Enterprise Linux=8.0
redhat Enterprise Linux Eus=8.6
redhat Enterprise Linux For Ibm Z Systems=8.0
redhat Enterprise Linux For Ibm Z Systems Eus=8.6
redhat Enterprise Linux For Power Little Endian=8.0
redhat Enterprise Linux For Power Little Endian Eus=8.6
F5 BIG-IP>=17.1.0<=17.1.2
17.5.0
F5 BIG-IP>=16.1.0<=16.1.5
16.1.6
F5 BIG-IP>=15.1.0<=15.1.10
F5 BIG-IQ Centralized Management>=8.2.0<=8.3.0
8.4.0
F5 Traffix SDC=5.2.0

Event History

Nov 17, 2021
Data Sourced
via Red Hat·04:42 PM
DescriptionSeverityAffected Software
Aug 23, 2022
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Sep 6, 2024
Advisory Published
via F5·12:46 AM
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is CVE-2021-31566?

CVE-2021-31566 is a vulnerability in the Libarchive library that allows an attacker to change the modes, times, access control lists, and flags of a file outside of an archive when it is extracted.

2

How does CVE-2021-31566 occur?

CVE-2021-31566 occurs due to an improper link resolution flaw in the Libarchive library.

3

What is the severity of CVE-2021-31566?

CVE-2021-31566 has a severity rating of high, with a CVSS score of 7.8.

4

Which software is affected by CVE-2021-31566?

The Libarchive library version up to exclusive 3.5.2, Fedora 35, and various versions of Redhat Enterprise Linux are affected by CVE-2021-31566.

5

How can I fix CVE-2021-31566?

To fix CVE-2021-31566, update the Libarchive library to version 3.5.2 or later.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203