CVE-2021-40153

Source
https://cve.org/CVERecord?id=CVE-2021-40153
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-40153.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2021-40153
Downstream
Related
Published
2021-08-27T15:15:09Z
Modified
2026-07-08T23:46:31Z
Severity
  • 8.1 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H CVSS Calculator
Summary
[none]
Details

squashfs_opendir in unsquash-1.c in Squashfs-Tools 4.5 stores the filename in the directory entry; this is then used by unsquashfs to create the new file during the unsquash. The filename is not validated for traversal outside of the destination directory, and thus allows writing to locations outside of the destination.

Database specific
{
    "unresolved_ranges": [
        {
            "cpes": [
                "cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*",
                "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*"
            ],
            "extracted_events": [
                {
                    "introduced": "9.0"
                },
                {
                    "last_affected": "9.0"
                },
                {
                    "introduced": "10.0"
                },
                {
                    "last_affected": "10.0"
                }
            ],
            "source": "CPE_STRING",
            "vendor_product": "debian:debian_linux"
        },
        {
            "cpes": [
                "cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:*",
                "cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*"
            ],
            "extracted_events": [
                {
                    "introduced": "34"
                },
                {
                    "last_affected": "34"
                },
                {
                    "introduced": "33"
                },
                {
                    "last_affected": "33"
                }
            ],
            "source": "CPE_STRING",
            "vendor_product": "fedoraproject:fedora"
        },
        {
            "cpes": [
                "cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*",
                "cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*"
            ],
            "extracted_events": [
                {
                    "introduced": "7.0"
                },
                {
                    "last_affected": "7.0"
                },
                {
                    "introduced": "8.0"
                },
                {
                    "last_affected": "8.0"
                }
            ],
            "source": "CPE_STRING",
            "vendor_product": "redhat:enterprise_linux"
        }
    ]
}
References

Affected packages

Git / github.com/plougher/squashfs-tools

Affected ranges

Type
GIT
Repo
https://github.com/plougher/squashfs-tools
Events
Database specific
Show details
{
    "cpe": "cpe:2.3:a:squashfs-tools_project:squashfs-tools:4.5:*:*:*:*:*:*:*",
    "extracted_events": [
        {
            "introduced": "4.5"
        },
        {
            "last_affected": "4.5"
        }
    ],
    "source": [
        "CPE_STRING",
        "REFERENCES"
    ]
}

Affected versions

4.*
4.5

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-40153.json"
vanir_signatures
[
    {
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "50828977239246341552227491787446239835",
                "128576841512081726737754358413906834367",
                "110043700371647694562612672828809094040"
            ],
            "threshold": 0.9
        },
        "id": "CVE-2021-40153-009ba15a",
        "signature_type": "Line",
        "signature_version": "v1",
        "source": "https://github.com/plougher/squashfs-tools/commit/79b5a555058eef4e1e7ff220c344d39f8cd09646",
        "target": {
            "file": "squashfs-tools/unsquashfs.h"
        }
    },
    {
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "160501286239700629092135283669755288177",
                "213780428136095547299888337788402941706",
                "23619371042075555198739527988650145162",
                "221334141776301865758225224668281721804",
                "266758379142232307434566963428457973280"
            ],
            "threshold": 0.9
        },
        "id": "CVE-2021-40153-017e9ff3",
        "signature_type": "Line",
        "signature_version": "v1",
        "source": "https://github.com/plougher/squashfs-tools/commit/79b5a555058eef4e1e7ff220c344d39f8cd09646",
        "target": {
            "file": "squashfs-tools/unsquash-2.c"
        }
    },
    {
        "deprecated": false,
        "digest": {
            "function_hash": "51293039805656847917657443662744577466",
            "length": 2505
        },
        "id": "CVE-2021-40153-1d0dd43f",
        "signature_type": "Function",
        "signature_version": "v1",
        "source": "https://github.com/plougher/squashfs-tools/commit/79b5a555058eef4e1e7ff220c344d39f8cd09646",
        "target": {
            "file": "squashfs-tools/unsquash-4.c",
            "function": "squashfs_opendir"
        }
    },
    {
        "deprecated": false,
        "digest": {
            "function_hash": "80923551572641589015915162064405619249",
            "length": 2783
        },
        "id": "CVE-2021-40153-2e9654ae",
        "signature_type": "Function",
        "signature_version": "v1",
        "source": "https://github.com/plougher/squashfs-tools/commit/79b5a555058eef4e1e7ff220c344d39f8cd09646",
        "target": {
            "file": "squashfs-tools/unsquash-1.c",
            "function": "squashfs_opendir"
        }
    },
    {
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "240446617043653286480198865004930916245",
                "85036573388738113650473330562054475123",
                "178959040955563739941298411213357854478",
                "52757748330772165091005910095155019992"
            ],
            "threshold": 0.9
        },
        "id": "CVE-2021-40153-660bbe71",
        "signature_type": "Line",
        "signature_version": "v1",
        "source": "https://github.com/plougher/squashfs-tools/commit/79b5a555058eef4e1e7ff220c344d39f8cd09646",
        "target": {
            "file": "squashfs-tools/unsquashfs.c"
        }
    },
    {
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "34954808733838894450630971783915405997",
                "213780428136095547299888337788402941706",
                "23619371042075555198739527988650145162",
                "221334141776301865758225224668281721804",
                "266758379142232307434566963428457973280"
            ],
            "threshold": 0.9
        },
        "id": "CVE-2021-40153-7ca598b0",
        "signature_type": "Line",
        "signature_version": "v1",
        "source": "https://github.com/plougher/squashfs-tools/commit/79b5a555058eef4e1e7ff220c344d39f8cd09646",
        "target": {
            "file": "squashfs-tools/unsquash-1.c"
        }
    },
    {
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "197022567876957868834385391713847007419",
                "213780428136095547299888337788402941706",
                "23619371042075555198739527988650145162",
                "221334141776301865758225224668281721804",
                "266758379142232307434566963428457973280"
            ],
            "threshold": 0.9
        },
        "id": "CVE-2021-40153-82fdbc53",
        "signature_type": "Line",
        "signature_version": "v1",
        "source": "https://github.com/plougher/squashfs-tools/commit/79b5a555058eef4e1e7ff220c344d39f8cd09646",
        "target": {
            "file": "squashfs-tools/unsquash-4.c"
        }
    },
    {
        "deprecated": false,
        "digest": {
            "function_hash": "276419838980127061434609503158908259625",
            "length": 2787
        },
        "id": "CVE-2021-40153-8898e7df",
        "signature_type": "Function",
        "signature_version": "v1",
        "source": "https://github.com/plougher/squashfs-tools/commit/79b5a555058eef4e1e7ff220c344d39f8cd09646",
        "target": {
            "file": "squashfs-tools/unsquash-3.c",
            "function": "squashfs_opendir"
        }
    },
    {
        "deprecated": false,
        "digest": {
            "function_hash": "80923551572641589015915162064405619249",
            "length": 2783
        },
        "id": "CVE-2021-40153-90eb83c8",
        "signature_type": "Function",
        "signature_version": "v1",
        "source": "https://github.com/plougher/squashfs-tools/commit/79b5a555058eef4e1e7ff220c344d39f8cd09646",
        "target": {
            "file": "squashfs-tools/unsquash-2.c",
            "function": "squashfs_opendir"
        }
    },
    {
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "254152677995986906383011311190010600236",
                "213780428136095547299888337788402941706",
                "23619371042075555198739527988650145162",
                "221334141776301865758225224668281721804",
                "266758379142232307434566963428457973280"
            ],
            "threshold": 0.9
        },
        "id": "CVE-2021-40153-d2150224",
        "signature_type": "Line",
        "signature_version": "v1",
        "source": "https://github.com/plougher/squashfs-tools/commit/79b5a555058eef4e1e7ff220c344d39f8cd09646",
        "target": {
            "file": "squashfs-tools/unsquash-3.c"
        }
    }
]
vanir_signatures_modified
"2026-07-08T23:46:31Z"