Junglewise Threat Intelligence

CVE-2020-36193: Directory Traversal in Archive_Tar

CVE-2020-36193 · Severity: critical · CVSS 3.1 · Exploited in the wild · Published 2021-04-22

Technologies: pear/archive_tar (Packagist), Drupal Core, Red Hat Enterprise Linux. Vendors: Packagist, Drupal, Red Hat.

Executive brief

PEAR Archive_Tar through 1.4.11 is vulnerable to directory traversal during write operations. The flaw exists in Tar.php due to inadequate validation of symbolic links, allowing an attacker to write files to arbitrary locations outside the intended directory.

Affected products

  • PEAR Archive_Tar through 1.4.11
  • Drupal Core
  • Red Hat Enterprise Linux

Timeline

  • 2021-01-18: patched: Patch committed to GitHub repository.
  • 2022-08-25: disclosed: Vulnerability published.
  • 2022-08-25: kev added: Added to CISA Known Exploited Vulnerabilities catalog.
  • 2022-08-25: exploited: Reported as exploited in the wild.

Related threats