CVE-2022-29967

Source
https://nvd.nist.gov/vuln/detail/CVE-2022-29967
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-29967.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-29967
Downstream
Published
2022-04-29T23:15:09Z
Modified
2025-10-21T07:04:04.466013Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
[none]
Details

staticcompressedinmemorywebsitecallback.c in Glewlwyd through 2.6.2 allows directory traversal.

References

Affected packages

Git / github.com/babelouest/glewlwyd

Affected ranges

Type
GIT
Repo
https://github.com/babelouest/glewlwyd
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

1.*

1.0
1.0.1
1.1
1.1.1
1.1.2
1.2
1.2.1
1.2.2

v1.*

v1.2.3
v1.2.4
v1.3
v1.3.1
v1.3.2
v1.3.2-b
v1.3.2-b.2
v1.3.2-b.3
v1.3.2-b.4
v1.3.2-b.5
v1.3.2-b.6
v1.3.3
v1.4.0
v1.4.1
v1.4.2
v1.4.3
v1.4.4
v1.4.6
v1.4.7
v1.4.8
v1.4.9

v2.*

v2.0.0
v2.0.0-b1
v2.0.0-b2
v2.0.0-b3
v2.0.0-rc1
v2.0.0-rc2
v2.1.0
v2.1.1
v2.2.0
v2.3.0
v2.3.1
v2.3.2
v2.4.0
v2.5.0
v2.5.1
v2.5.2
v2.5.3
v2.6.0
v2.6.1

Database specific

vanir_signatures

[
    {
        "deprecated": false,
        "id": "CVE-2022-29967-6b736b0d",
        "source": "https://github.com/babelouest/glewlwyd/commit/e3f7245c33897bf9b3a75acfcdb8b7b93974bf11",
        "digest": {
            "line_hashes": [
                "214780142764602157075791188521117548087",
                "149029358984154185979674218665657513770",
                "72058649184213672970482867954840201866",
                "66981640211413300866092233921874891886",
                "29832082487672741049093194224220390621",
                "232009279282130326299019360066273481484",
                "56554857926059713428862901656731055390",
                "139695126402316211103356470502324403513",
                "65267218265186024510309569093215473633",
                "124831265639094128251278489693807086675",
                "192889864164178605908664408581913067972",
                "299108428696561461445085606832638491892",
                "207276040478407847464748444621316278868",
                "265393684198403503471398169919224709362",
                "24385936693453863575075466391101742587",
                "186458839262880061801783248802356355404",
                "113527797751753879886176247489029085016",
                "301164689460801254561623660407045763164",
                "72757770930020787955963749635559055762",
                "3590084084360598554649094526563230653",
                "85511803413387910945144231112460809646",
                "156401311599824990821389581115204491055",
                "152450276157774627161558990238907150370",
                "10946830018238793165339270772336486576",
                "55859029724835655263639832929645904281",
                "126739936557389465923109303021601121130",
                "276694602769978757264006304629895847193",
                "311585357531396057733571191398753176519",
                "119947218353863497131714706853025161982",
                "287596117390990785689290615691774892313",
                "110761080072279434173052433864227795645",
                "79925875564066680242478227679484231261",
                "239456286950448386860707601305020735094",
                "236126355545510801111993673861759136720",
                "49686739785360290604267167711292332736",
                "279976027878669404995193632436048775090",
                "258418933530436189695271523344915735060",
                "87640896720326949099065576576814305861",
                "12280726749810509865864438673889815592",
                "205538864887905000108263298597353823254",
                "182950962652342131369511446651982014528",
                "197243126665488499340309695486461698923",
                "114342961166426122369034383353530728657",
                "324803614986164244741765776483542954763",
                "227975337098095375092351971611452916531",
                "260806828557305927014004341601683382964",
                "155581168895046834714536041988449272977",
                "51031319590456488259308579633448787580",
                "49540746284807503666026286480077907589",
                "73149551296466111681638284744212347842",
                "93433096765740171210809639798422731942",
                "129499281689149484319426971209709216641",
                "29373806412154003148194720619834210745",
                "103875605099950278806419684378857675931",
                "329655040198092692645709134326620529754",
                "13709035640513723948096377728918907109",
                "295516071234684053181919395655846476405",
                "148398294401366328334951823478080457116",
                "211189096155039065861225384483110609450",
                "287312741050747324709322415456389042460",
                "171345022152836914311293620572088512495",
                "108186535715188106632125963944653706604",
                "198045328705856409978016044685037832203",
                "84324805003761675843479172265142291174",
                "144791737463015268716429132436804782523",
                "306680787042723013399792477788782049018",
                "238770070959779638323576438230699668839",
                "174789005032252309859410592369226834088",
                "234662500529079985201089578469793882773",
                "202802711196591178964127418043349325907",
                "52804849940263657711447665197778410268",
                "6125563207965652221000226835300916278",
                "195363554456061469625454256199213727247",
                "299602499128796621765158447704257426979",
                "175551792983273096134233136725148487481",
                "43018868947157506201204291489125327241",
                "301567293504556913121283762914152282401",
                "102060692149362354789073203954567302208",
                "184904706384749678687598088988627055367",
                "40479609106011464972334963281877077415",
                "85154572862913893002384514277342133649",
                "314081695024803448042938468489494270343",
                "265118091924062754696749629585095744819",
                "307917030715718821984131635604008445420",
                "203251358045412969711765991480864489413",
                "6791388905583898864411209649771895976",
                "191727588533482590629284834135681816772",
                "281083740441717580546324279382160671758",
                "313367282098121195068775807359261507091",
                "186614874336832351414049252583998178731",
                "264716874236454769627989847129852953277",
                "225046684417221814520077236788843057413",
                "309001321923751363977760125849422995908",
                "165083473807205185539646353932824868906",
                "14033348509941434174627980665312579773",
                "231778239198073896198893172423234802811",
                "132528284395405719402738903945117025185",
                "162774742583089875786820169600810592296",
                "275823784954763318267120273778716661490",
                "301217635039031045342842444357938496862",
                "307067128187215323440182842085574857574",
                "152930147446255795649020724087349362947",
                "258663313812228590100320348109566176071",
                "274790101134579279949631054979331702559",
                "235112822764624724529159480525539610523",
                "23106687780131342292889968570451597891",
                "326977730404141999685565178965529246849",
                "6530203484715977282640533523677431230",
                "9456184133715325234323286939507254748",
                "130130517754690757466317956329252724188",
                "10766205541393901799316270292723277757",
                "271027280967016528964814830439914375272",
                "12048800492243011476113803118678605907",
                "269822066644102261716370778037423748815",
                "130019983920649507269846232822606495297",
                "88707464484781280279045148807181312950",
                "12597995810719237151401612323713639671",
                "96686981466461566357285023075486333809",
                "224651891102250767689244234254350418405",
                "161446068124165179479282644299686231870",
                "22023748744442103276502725765157002641",
                "4659419396644425690404249542194440521",
                "158991985055392144609998596423213679383",
                "210481503619024550721878137411227122385",
                "259335331624516512281785257912565078755",
                "41943739702980366192077260136947902583",
                "148033222255684598494488748167676047504",
                "58414888566188053682504908356291675951",
                "293276616417580748612450861074462440485",
                "98786392675243540019680583562854755973",
                "196048546963294131869155355558367210015",
                "218809276432043550528243264862783079749",
                "51635132105213618667610278060877303883",
                "161762516119274820514926643145388727039",
                "303702968709859134328261281699351535312",
                "16819251130630960692945098029369915516",
                "141056002820140550054325146297645480547",
                "265174639547660115355281442152329407226",
                "162835814168090970812284310326758193272",
                "157798470668623833525784553543076047960",
                "161092359272457386825649103313338737980",
                "126739936557389465923109303021601121130",
                "276694602769978757264006304629895847193",
                "311585357531396057733571191398753176519",
                "119947218353863497131714706853025161982",
                "287596117390990785689290615691774892313",
                "50382668705414206881202984948497961925",
                "81608023415292128739531803585526953297",
                "94005220642847236433365560514814185563",
                "28845503447756595813109569103230429492",
                "280601165677074549895156609936450799255",
                "93930672603229829480458532397436454985",
                "74505745654365210555323634497089242136",
                "182499759276261144401390974535173491741",
                "41958321523758052590884932043858351321",
                "133832822017388833809426329416620343146",
                "15443806263544329890962625943423641978",
                "135470315157946470669907383363956295377",
                "43603987045720605569497046783291821609",
                "218740912444591490841982875158055742247",
                "77942558144261790089101845833343223007"
            ],
            "threshold": 0.9
        },
        "target": {
            "file": "src/static_compressed_inmemory_website_callback.c"
        },
        "signature_type": "Line",
        "signature_version": "v1"
    },
    {
        "deprecated": false,
        "id": "CVE-2022-29967-74757dbc",
        "source": "https://github.com/babelouest/glewlwyd/commit/e3f7245c33897bf9b3a75acfcdb8b7b93974bf11",
        "digest": {
            "function_hash": "37656510222410812897668841561580776423",
            "length": 1958.0
        },
        "target": {
            "function": "callback_static_file_uncompressed",
            "file": "src/static_compressed_inmemory_website_callback.c"
        },
        "signature_type": "Function",
        "signature_version": "v1"
    },
    {
        "deprecated": false,
        "id": "CVE-2022-29967-a5d9ae38",
        "source": "https://github.com/babelouest/glewlwyd/commit/e3f7245c33897bf9b3a75acfcdb8b7b93974bf11",
        "digest": {
            "function_hash": "294129840294921224774034859401889179732",
            "length": 6067.0
        },
        "target": {
            "function": "callback_static_compressed_inmemory_website",
            "file": "src/static_compressed_inmemory_website_callback.c"
        },
        "signature_type": "Function",
        "signature_version": "v1"
    }
]