CVE-2018-1002207Medium· 5.5▾ SunlitArbitrary File Write via Archive Extraction in mholt/archiver
▾ Sunlit zone — Low / medium · no exploitation signal
impact 30.3 · likelihood 0.4 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Exploit-prediction probability, daily snapshots since Sep 12.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via OSV
Last analysed / modified upstream
2.5%
mholt/archiver golang package before e4ef56d48eb029648b0e895bb0b6a393ef0829c3 is vulnerable to directory traversal, allowing attackers to write to arbitrary files via a ../ (dot dot slash) in an archive entry that is mishandled during extraction. This vulnerability is also known as 'Zip-Slip'.
github.com/mholt/archiver < 2.1.0Upgrade to a patched release:
github.com/mholt/archiver 2.1.0Connected by shared product, vendor, weakness, or advisory.