CVE-2022-4510
A path traversal vulnerability was identified in ReFirm Labs binwalk from version 2.1.2b through 2.3.3 included.
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 22.0%, higher than 98% of all known CVEs. Patch or mitigate before the next change window.
Description
A path traversal vulnerability was identified in ReFirm Labs binwalk from version 2.1.2b through 2.3.3 included. By crafting a malicious PFS filesystem file, an attacker can get binwalk's PFS extractor to extract files at arbitrary locations when binwalk is run in extraction mode (-e option). Remote code execution can be achieved by building a PFS filesystem that, upon extraction, would extract a malicious binwalk module into the folder .config/binwalk/plugins. This vulnerability is associated with program files src/binwalk/plugins/unpfs.py. This issue affects binwalk from 2.1.2b through 2.3.3 included.
- CVSS 3.1
- 7.8 HIGHCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- EPSS
- 22.01% probability · 98th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-22
- Affected
- microsoft/binwalk
- Source
- research@onekey.com
References
- https://github.com/ReFirmLabs/binwalk/pull/617Exploit, Patch, Third Party Advisory
- https://security.gentoo.org/glsa/202309-07
- https://github.com/ReFirmLabs/binwalk/pull/617Exploit, Patch, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2025/12/msg00022.html
- https://security.gentoo.org/glsa/202309-07
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.