在 Google fuse-archive 1.24 之前的版本中,如果攻击者能够向 PATH 环境变量中预置一个目录,或者能够将恶意二进制文件写入到 PATH 中包含的、由攻击者控制或具有写权限的目录,即可劫持执行路径。这使得攻击者可以在运行 fuse-archive 进程的用户安全上下文中执行任意本地代码。该问题在 1.22 版本中得到部分缓解,并在 1.24 版本中通过改进的定向 PATH 过滤机制得到彻底修复。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| fuse-archive | 0 ~ 1.24 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet