CRITICAL🇵🇱 Wersja polska

CVE-2023-50255

CVSS 9.3v3.1pub. 2023-12-27upd. 2024-11-21

Deepin-Compressor is the default archive manager of Deepin Linux OS. Prior to 5.12.21, there's a path traversal vulnerability in deepin-compressor that can be exploited to achieve Remote Command Execution on the target system upon opening crafted archives. Users are advised to update to version 5.12.21 which addresses the issue. There are no known workarounds for this vulnerability.

🤖 AI Analysis
How it works

The vulnerability results from improper verification of file paths during archive extraction (CWE-22, CWE-23, CWE-26). An attacker can prepare a specially crafted archive containing files with paths extending beyond the target extraction directory. When the victim opens such an archive, the application extracts files to unintended locations in the file system, which can lead to execution of malicious code on the target system.

Impact

Successful exploitation of the vulnerability allows an attacker to remotely execute arbitrary commands (RCE) on the victim's system with the privileges of the user running the application. This can lead to compromise of confidentiality and integrity of system data.

Mitigation & patch

Deepin-Compressor should be updated to version 5.12.21, which removes the described vulnerability. The vendor does not provide any workarounds for this vulnerability — updating is the only recommended action.

Who is affected

Deepin-Compressor in versions earlier than 5.12.21 on Deepin Linux OS system.

Analysis generated by Claude AI (Anthropic) based on NVD data. Always verify with vendor.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:N
  • Deepin Compressor

    APP
    Deepin
    < 5.12.21
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
Tags
Path Traversal
CWE
References

Related vulnerabilities

CVE-2023-50254CRITICAL9.3PL ✓same vendor

RCE w Deepin Reader poprzez path traversal w plikach DOCX

CVE-2019-13226HIGH7.0same vendor

deepin-clone before 1.1.3 uses a predictable path /tmp/.deepin-clone/mount/<block-dev-basename> in the Helper:...

CVE-2017-7622HIGH8.8same vendor

dde-daemon, the daemon process of DDE (Deepin Desktop Environment) 15.0 through 15.3, runs with root privilege...

CVE-2019-13227MEDIUM5.5same vendor

In GUI mode, deepin-clone before 1.1.3 creates a log file at the fixed path /tmp/.deepin-clone.log as root, an...

CVE-2019-13228MEDIUM4.7same vendor

deepin-clone before 1.1.3 uses a fixed path /tmp/repo.iso in the BootDoctor::fix() function to download an ISO...