HIGH

CVE-2022-30333

Debian Debian Linux 2022-05-09 CVSS v3.1
CVSS
7.5
KEV

Description

RARLAB UnRAR before 6.12 on Linux and UNIX allows directory traversal to write to files during an extract (aka unpack) operation, as demonstrated by creating a ~/.ssh/authorized_keys file. NOTE: WinRAR and Android RAR are unaffected.

Summary dbcve.org

UnRAR before version 6.12 on Linux and UNIX contains a directory traversal vulnerability that allows attackers to write files to arbitrary locations outside the intended extraction directory during unpack operations, potentially enabling remote code execution by overwriting sensitive files like SSH authorized_keys.

Mitigation

Upgrade UnRAR to version 6.12 or later to remediate this vulnerability. On POSIX systems, verify that automated extraction pipelines or user-facing unzip utilities that may bundle vulnerable UnRAR versions are also updated.

Proof of Concept
Patch Commit

Weakness (CWE)

CWE-22 Path Traversal
CWE-59 Link Following (Symlink)

EPSS Score

99.09%
Probability of exploitation in next 30 days
99.9th percentile

References

View on dbcve.org
Base CVE data derived from NVD (public domain). Enrichment by dbcve.org (CC-BY-4.0). Fetched via API.
Back to CVE