GHSA-h672-p7h7-97v9

Suggest an improvement
Source
https://github.com/advisories/GHSA-h672-p7h7-97v9
Import Source
https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2026/07/GHSA-h672-p7h7-97v9/GHSA-h672-p7h7-97v9.json
JSON Data
https://api.osv.dev/v1/vulns/GHSA-h672-p7h7-97v9
Aliases
Downstream
Published
2026-07-09T23:20:12Z
Modified
2026-07-13T16:42:34Z
Severity
  • 5.4 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L CVSS Calculator
Summary
Rattler vulnerable to package cache path traversal via conda package build string
Details

rattler_cache and py-rattler were vulnerable to package-cache path traversal when handling package metadata from conda channels.

During cache materialization, the ratter_cache code used the package record build string as part of a cache key that was joined into a filesystem path. A malicious or untrusted channel could publish repodata with path separators or traversal components in that field, causing package contents to be written outside the configured package cache directory.

The issue requires use of a malicious or otherwise untrusted conda channel. Curated channels that validate package metadata are not expected to allow malformed build strings of this form.

Users should upgrade to a patched version and avoid untrusted conda channels.

Database specific
{
    "cwe_ids":  [
        "CWE-22",
        "CWE-73"
    ],
    "github_reviewed":  true,
    "github_reviewed_at":  "2026-07-09T23:20:12Z",
    "nvd_published_at":  null,
    "severity":  "MODERATE"
}
References

Affected packages

crates.io / rattler_cache

Package

Name
rattler_cache
View open source insights on deps.dev
Purl
pkg:cargo/rattler_cache

Affected ranges

Type
SEMVER
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
0.9.0

Database specific

last_known_affected_version_range
"<= 0.8.2"
source
"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2026/07/GHSA-h672-p7h7-97v9/GHSA-h672-p7h7-97v9.json"

PyPI / py-rattler

Package

Name
py-rattler
View open source insights on deps.dev
Purl
pkg:pypi/py-rattler

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
0.24.0

Affected versions

0.*
0.1.0
0.1.1
0.1.2
0.2.0
0.2.1
0.3.0
0.4.0
0.5.0
0.6.0
0.6.1
0.6.2
0.6.3
0.7.0
0.7.1
0.7.2
0.8.0
0.8.2
0.9.0
0.9.1
0.10.0
0.11.0
0.12.0
0.13.0
0.13.1
0.14.0
0.15.0
0.16.0
0.17.0
0.18.0
0.19.0
0.20.0
0.21.0
0.22.0
0.23.0
0.23.1
0.23.2

Database specific

last_known_affected_version_range
"<= 0.23.2"
source
"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2026/07/GHSA-h672-p7h7-97v9/GHSA-h672-p7h7-97v9.json"