以下是对该漏洞描述的专业中文翻译: PyMuPDF 版本 1.28.2 及更早版本(已在提交 b2c8f3a 中修复)在 的 函数字体处理分支中存在路径遍历(path traversal)漏洞。该漏洞的成因是:输出文件名通过直接将文档中控制的 BaseFont 名称拼接在用户指定的输出目录之后,而未移除路径分隔符或 序列。 攻击者可以通过提供特制的 PDF、EPUB、XPS 或 FB2 文件,其中 BaseFont 名称包含经解码后变为 序列或绝对路径的编码路径分隔符,从而在无需身份验证或提升权限的情况下,实现任意
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet