VYPR

Binwalk

by Microsoft

Source repositories

CVEs (2)

  • CVE-2022-4510HigJan 26, 2023
    risk 0.48cvss 7.8epss 0.22

    A path traversal vulnerability was identified in ReFirm Labs binwalk from version 2.1.2b through 2.3.3 included. By crafting a malicious PFS filesystem file, an attacker can get binwalk's PFS extractor to extract files at arbitrary locations when binwalk is run in extraction…

  • CVE-2021-4287MedDec 27, 2022
    risk 0.26cvss 5.0epss 0.02

    A vulnerability, which was classified as problematic, was found in ReFirm Labs binwalk up to 2.3.2. Affected is an unknown function of the file src/binwalk/modules/extractor.py of the component Archive Extraction Handler. The manipulation leads to symlink following. It is…