Candidate: CVE-2018-1000544 PublicDate: 2018-06-26 16:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-1000544 https://github.com/rubyzip/rubyzip/issues/369 Description: rubyzip gem rubyzip version 1.2.1 and earlier contains a Directory Traversal vulnerability in Zip::File component that can result in write arbitrary files to the filesystem. This attack appear to be exploitable via If a site allows uploading of .zip files , an attacker can upload a malicious file that contains symlinks or files with absolute pathnames "../" to write arbitrary files to the filesystem.. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H [9.8 CRITICAL] nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H [9.8 CRITICAL] Patches_ruby-zip: upstream_ruby-zip: released (1.2.1-1.1, 1.1.6-1+deb8u2) precise/esm_ruby-zip: DNE trusty_ruby-zip: DNE trusty/esm_ruby-zip: DNE xenial_ruby-zip: ignored (end of standard support, was needed) artful_ruby-zip: ignored (reached end-of-life) bionic_ruby-zip: released (1.2.1-1.1~build0.18.04.1) cosmic_ruby-zip: not-affected (1.2.1-1.1) disco_ruby-zip: not-affected (1.2.1-1.1) eoan_ruby-zip: not-affected (1.2.1-1.1) focal_ruby-zip: not-affected (1.2.1-1.1) groovy_ruby-zip: not-affected (1.2.1-1.1) hirsute_ruby-zip: not-affected (1.2.1-1.1) impish_ruby-zip: not-affected (1.2.1-1.1) jammy_ruby-zip: not-affected (1.2.1-1.1) devel_ruby-zip: not-affected (1.2.1-1.1)