Path traversal in Perl - CVE-2018-12015
Published: June 8, 2018 / Updated: June 8, 2018
Vulnerability details
The vulnerability allows a remote attacker to bypass security restrictions on the target system.
The vulnerability exists due to an error when processing malicious input. A remote attacker can trick the victim into extracting a specially crafted tar archive containing a file and a symbolic link (symlink) with the same name, create a file outside of the current working directory, bypass a directory-traversal protection mechanism and create or overwrite files with the privileges of the target user.
Affected software
Debian Linux
Amazon Linux AMI
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Scientific Computing
Opensuse
Fedora
perl (Alpine package)
perl-Archive-Tar
Dynamic System Analysis (DSA) Preboot
How to mitigate CVE-2018-12015
Dynamic System Analysis (DSA) Preboot - update to dsyte2z-9.65
perl-Archive-Tar - addressed in versions 2.28-1.fc27, 2.28-1.fc28
External References
Related Security Bulletins
- Security restrictions bypass in Perl
- Debian update for perl
- OpenSUSE Linux update for perl
- OpenSUSE Linux update for perl
- Red Hat update for perl-Archive-Tar
- Amazon Linux AMI update for perl-Archive-Tar
- Path traversal in perl (Alpine package)
- IBM Dynamic System Analysis (DSA) Preboot update for Perl
- Fedora 28 update for perl-Archive-Tar
- Fedora 27 update for perl-Archive-Tar