CVE-2018-1000801
published 2018-09-06CVE-2018-1000801: okular version 18.08 and earlier contains a Directory Traversal vulnerability in function "unpackDocumentArchive(...)" in "core/document.cpp" that can result…
PriorityP429medium5.5CVSS 3.0
AVLACLPRNUIRSUCNIHAN
EPSS
1.83%
76.7th percentile
okular version 18.08 and earlier contains a Directory Traversal vulnerability in function "unpackDocumentArchive(...)" in "core/document.cpp" that can result in Arbitrary file creation on the user workstation. This attack appear to be exploitable via he victim must open a specially crafted Okular archive. This issue appears to have been corrected in version 18.08.1
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | okular | < okular 4:17.12.2-2.1 (bookworm) | okular 4:17.12.2-2.1 (bookworm) |
| kde | okular | <= 18.08 | — |
| kde | okular | >= 0 < 4:17.12.2-2.1 | 4:17.12.2-2.1 |
| kde | okular | >= 0 < 4:17.12.2-2.1 | 4:17.12.2-2.1 |
| kde | okular | >= 0 < 4:17.12.2-2.1 | 4:17.12.2-2.1 |
| kde | okular | >= 0 < 4:17.12.2-2.1 | 4:17.12.2-2.1 |
CVSS provenance
nvdv3.05.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
osv5.5MEDIUM
vendor_debian5.5MEDIUM
vendor_redhat5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Okular vulnerability
vendor_ubuntu·2021-03-15
CVE-2018-1000801 Okular vulnerability
Title: Okular vulnerability
Summary: Okular could be made to overwrite files.
It was discovered that Okular mishandled certain crafted archives during
extraction. An attacker could use this vulnerability to write arbitrary
files to the filesystem.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
okular: Directory traversal in function unpackDocumentArchive() in core/document.cpp
vendor_redhat·2018-09-06·CVSS 5.5
CVE-2018-1000801 [MEDIUM] CWE-22 okular: Directory traversal in function unpackDocumentArchive() in core/document.cpp
okular: Directory traversal in function unpackDocumentArchive() in core/document.cpp
okular version 18.08 and earlier contains a Directory Traversal vulnerability in function "unpackDocumentArchive(...)" in "core/document.cpp" that can result in Arbitrary file creation on the user workstation. This attack appear to be exploitable via he victim must open a specially crafted Okular archive. This issue appears to have been corrected in version 18.08.1
A path traversal vulnerability has been discovered in Okular, in the way it creates temporary files when reading an Okular archive. Paths are read from content.xml and they are not properly sanitized before being used as template file names for the temporary files created when extracting the Okular archive, thus allowing a local attacker to wr
Debian
CVE-2018-1000801: okular - okular version 18.08 and earlier contains a Directory Traversal vulnerability in...
vendor_debian·2018·CVSS 5.5
CVE-2018-1000801 [MEDIUM] CVE-2018-1000801: okular - okular version 18.08 and earlier contains a Directory Traversal vulnerability in...
okular version 18.08 and earlier contains a Directory Traversal vulnerability in function "unpackDocumentArchive(...)" in "core/document.cpp" that can result in Arbitrary file creation on the user workstation. This attack appear to be exploitable via he victim must open a specially crafted Okular archive. This issue appears to have been corrected in version 18.08.1
Scope: local
bookworm: resolved (fixed in 4:17.12.2-2.1)
bullseye: resolved (fixed in 4:17.12.2-2.1)
forky: resolved (fixed in 4:17.12.2-2.1)
sid: resolved (fixed in 4:17.12.2-2.1)
trixie: resolved (fixed in 4:17.12.2-2.1)
GHSA
GHSA-5932-x8gj-85rm: okular version 18
ghsa_unreviewed·2022-05-14
CVE-2018-1000801 [MEDIUM] CWE-22 GHSA-5932-x8gj-85rm: okular version 18
okular version 18.08 and earlier contains a Directory Traversal vulnerability in function "unpackDocumentArchive(...)" in "core/document.cpp" that can result in Arbitrary file creation on the user workstation. This attack appear to be exploitable via he victim must open a specially crafted Okular archive. This issue appears to have been corrected in version 18.08.1
OSV
CVE-2018-1000801: okular version 18
osv·2018-09-06·CVSS 5.5
CVE-2018-1000801 [MEDIUM] CVE-2018-1000801: okular version 18
okular version 18.08 and earlier contains a Directory Traversal vulnerability in function "unpackDocumentArchive(...)" in "core/document.cpp" that can result in Arbitrary file creation on the user workstation. This attack appear to be exploitable via he victim must open a specially crafted Okular archive. This issue appears to have been corrected in version 18.08.1
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-1000801 okular: Directory traversal in function unpackDocumentArchive() in core/document.cpp [fedora-all]
bugzilla·2018-09-06·CVSS 5.5
CVE-2018-1000801 [MEDIUM] CVE-2018-1000801 okular: Directory traversal in function unpackDocumentArchive() in core/document.cpp [fedora-all]
CVE-2018-1000801 okular: Directory traversal in function unpackDocumentArchive() in core/document.cpp [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issu
Bugzilla
CVE-2018-1000801 okular: Directory traversal in function unpackDocumentArchive() in core/document.cpp
bugzilla·2018-09-06·CVSS 5.5
CVE-2018-1000801 [MEDIUM] CVE-2018-1000801 okular: Directory traversal in function unpackDocumentArchive() in core/document.cpp
CVE-2018-1000801 okular: Directory traversal in function unpackDocumentArchive() in core/document.cpp
okular version 18.08 and earlier contains a Directory Traversal vulnerability in
function unpackDocumentArchive() in core/document.cpp that can result in
arbitrary file creation on the user workstation. This attack appear to be
exploitable when the victim opens a specially crafted Okular archive. This
issue appears to have been corrected in version 18.08.1.
Upstream bug:
https://bugs.kde.org/show_bug.cgi?id=398096
Upstream patch:
https://cgit.kde.org/okular.git/commit/?id=8ff7abc14d41906ad978b6bc67e69693863b9d47
Discussion:
Created okular tracking bugs for this issue:
Affects: fedora-all [bug 1626266]
---
In core/document.cpp:openDocumentArchive()/unpackDocumentArchive() there are
https://bugs.kde.org/show_bug.cgi?id=398096https://cgit.kde.org/okular.git/commit/?id=8ff7abc14d41906ad978b6bc67e69693863b9d47https://lists.debian.org/debian-lts-announce/2018/09/msg00027.htmlhttps://security.gentoo.org/glsa/201811-08https://www.debian.org/security/2018/dsa-4303https://bugs.kde.org/show_bug.cgi?id=398096https://cgit.kde.org/okular.git/commit/?id=8ff7abc14d41906ad978b6bc67e69693863b9d47https://lists.debian.org/debian-lts-announce/2018/09/msg00027.htmlhttps://security.gentoo.org/glsa/201811-08https://www.debian.org/security/2018/dsa-4303
2018-09-06
Published