Debian Squashfs-Tools vulnerabilities

6 known vulnerabilities affecting debian/squashfs-tools.

Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM1LOW2

Vulnerabilities

Page 1 of 1
CVE-2021-40153HIGHCVSS 8.1fixed in squashfs-tools 1:4.5-2 (bookworm)2021
CVE-2021-40153 [HIGH] CVE-2021-40153: squashfs-tools - squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in th... squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination. Scope: local bookworm: resolved (fixed
debian
CVE-2021-41072HIGHCVSS 8.1fixed in squashfs-tools 1:4.5-3 (bookworm)2021
CVE-2021-41072 [HIGH] CVE-2021-41072: squashfs-tools - squashfs_opendir in unsquash-2.c in Squashfs-Tools 4.5 allows Directory Traversa... squashfs_opendir in unsquash-2.c in Squashfs-Tools 4.5 allows Directory Traversal, a different vulnerability than CVE-2021-40153. A squashfs filesystem that has been crafted to include a symbolic link and then contents under the same filename in a filesystem can cause unsquashfs to first create the symbolic link pointing outside the expected directory, and th
debian
CVE-2015-4646HIGHCVSS 7.5fixed in squashfs-tools 1:4.3-2 (bookworm)2015
CVE-2015-4646 [HIGH] CVE-2015-4646: squashfs-tools - (1) unsquash-1.c, (2) unsquash-2.c, (3) unsquash-3.c, and (4) unsquash-4.c in Sq... (1) unsquash-1.c, (2) unsquash-2.c, (3) unsquash-3.c, and (4) unsquash-4.c in Squashfs and sasquatch allow remote attackers to cause a denial of service (application crash) via a crafted input. Scope: local bookworm: resolved (fixed in 1:4.3-2) bullseye: resolved (fixed in 1:4.3-2) forky: resolved (fixed in 1:4.3-2) sid: resolved (fixed in 1:4.3-2) trixie: reso
debian
CVE-2015-4645MEDIUMCVSS 5.5fixed in squashfs-tools 1:4.3-2 (bookworm)2015
CVE-2015-4645 [MEDIUM] CVE-2015-4645: squashfs-tools - Integer overflow in the read_fragment_table_4 function in unsquash-4.c in Squash... Integer overflow in the read_fragment_table_4 function in unsquash-4.c in Squashfs and sasquatch allows remote attackers to cause a denial of service (application crash) via a crafted input, which triggers a stack-based buffer overflow. Scope: local bookworm: resolved (fixed in 1:4.3-2) bullseye: resolved (fixed in 1:4.3-2) forky: resolved (fixed in 1:4.3-2)
debian
CVE-2012-4025LOWCVSS 6.8fixed in squashfs-tools 1:4.2+20121212-1 (bookworm)2012
CVE-2012-4025 [MEDIUM] CVE-2012-4025: squashfs-tools - Integer overflow in the queue_init function in unsquashfs.c in unsquashfs in Squ... Integer overflow in the queue_init function in unsquashfs.c in unsquashfs in Squashfs 4.2 and earlier allows remote attackers to execute arbitrary code via a crafted block_log field in the superblock of a .sqsh file, leading to a heap-based buffer overflow. Scope: local bookworm: resolved (fixed in 1:4.2+20121212-1) bullseye: resolved (fixed in 1:4.2+20121212
debian
CVE-2012-4024LOWCVSS 6.8fixed in squashfs-tools 1:4.2+20121212-1 (bookworm)2012
CVE-2012-4024 [MEDIUM] CVE-2012-4024: squashfs-tools - Stack-based buffer overflow in the get_component function in unsquashfs.c in uns... Stack-based buffer overflow in the get_component function in unsquashfs.c in unsquashfs in Squashfs 4.2 and earlier allows remote attackers to execute arbitrary code via a crafted list file (aka a crafted file for the -ef option). NOTE: probably in most cases, the list file is a trusted file constructed by the program's user; however, there are some realistic
debian