RHEL 2.1 : unzip (RHSA-2003:200)

low Nessus Plugin ID 12403

Synopsis

The remote Red Hat host is missing a security update.

Description

Updated unzip packages resolving a vulnerability allowing arbitrary files to be overwritten are now available.

[Updated 15 August 2003] Ben Laurie found that the original patch to fix this issue missed a case where the path component included a quoted slash. These updated packages contain a new patch that corrects this issue.

The unzip utility is used for manipulating archives, which are multiple files stored inside of a single file.

A vulnerabilitiy in unzip version 5.50 and earlier allows attackers to overwrite arbitrary files during archive extraction by placing invalid (non-printable) characters between two '.' characters. These non-printable characters are filtered, resulting in a '..' sequence.
The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2003-0282 to this issue.

This erratum includes a patch ensuring that non-printable characters do not make it possible for a malicious .zip file to write to parent directories unless the '-:' command line parameter is specified.

Users of unzip are advised to upgrade to these updated packages, which are not vulnerable to this issue.

Solution

Update the affected unzip package.

See Also

https://access.redhat.com/security/cve/cve-2003-0282

https://marc.info/?l=bugtraq&m=105259038503175

https://access.redhat.com/errata/RHSA-2003:200

Plugin Details

Severity: Low

ID: 12403

File Name: redhat-RHSA-2003-200.nasl

Version: 1.28

Type: local

Agent: unix

Published: 7/6/2004

Updated: 1/14/2021

Supported Sensors: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus

Risk Information

VPR

Risk Factor: Medium

Score: 4.2

CVSS v2

Risk Factor: Low

Base Score: 2.6

Vector: CVSS2#AV:N/AC:H/Au:N/C:N/I:P/A:N

Vulnerability Information

CPE: cpe:/o:redhat:enterprise_linux:2.1, p-cpe:/a:redhat:enterprise_linux:unzip

Required KB Items: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu

Patch Publication Date: 8/15/2003

Vulnerability Publication Date: 6/16/2003

Reference Information

CVE: CVE-2003-0282

RHSA: 2003:200