PublicDateAtUSN: 2019-08-20 Candidate: CVE-2019-14751 PublicDate: 2019-08-22 16:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14751 https://github.com/nltk/nltk/blob/3.4.5/ChangeLog https://salvatoresecurity.com/zip-slip-in-nltk-cve-2019-14751/ https://github.com/mssalvatore/CVE-2019-14751_PoC https://ubuntu.com/security/notices/USN-4106-1 Description: NLTK Downloader before 3.4.5 is vulnerable to a directory traversal, allowing attackers to write arbitrary files via a ../ (dot dot slash) in an NLTK package (ZIP archive) that is mishandled during extraction. Ubuntu-Description: It was discovered that NLTK mishandled crafted ZIP archives during extraction. A remote attacker could use this vulnerability to write arbitrary files to the filesystem Notes: Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=935201 Priority: medium Discovered-by: Mike Salvatore Assigned-to: CVSS: nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N [7.5 HIGH] Patches_nltk: upstream: https://github.com/nltk/nltk/commit/f59d7ed8df2e0e957f7f247fe218032abdbe9a10 upstream_nltk: released (3.4.5) precise/esm_nltk: DNE trusty_nltk: ignored (out of standard support) trusty/esm_nltk: DNE xenial_nltk: released (3.1-1ubuntu0.1) bionic_nltk: released (3.2.5-1ubuntu0.1) disco_nltk: released (3.4-1ubuntu0.1) devel_nltk: not-affected (3.4.5-1)