VDB
EN
LOW 3.1

GHSA-58hv-7753-xmfq

Keras: tar extraction permits symlink-based path traversal

빠른 조치

GHSA-58hv-7753-xmfq — keras: 아래 명령으로 수정 버전으로 올리세요.

pip install --upgrade 'keras>=3.12.3'

상세

A vulnerability in keras-team/keras version 3.12.0 allows an attacker to craft a malicious tar archive that bypasses the `filter_safe_tarinfos` validation in `keras/src/utils/file_utils.py`. Specifically, symlink entries are not subjected to the same `is_path_in_dir` validation as regular file entries, allowing symlinks to be created outside the intended extraction directory. This can lead to symlink-based file read, file overwrite, or directory escape attacks. The issue is particularly impactful on Python 3.10 and 3.11, where `filter_safe_tarinfos` is the sole defense against tar path traversal. This vulnerability is distinct from CVE-2025-12060 and other previously reported issues.

이 버전이 영향받나요?

사용 중인 패키지 버전을 입력하면 즉시 평가합니다.

영향 패키지

PyPI / keras
최초 영향 버전: 0 수정 버전: 3.12.3
수정 pip install --upgrade 'keras>=3.12.3'
PyPI / keras
최초 영향 버전: 3.13.0 수정 버전: 3.15.0
수정 pip install --upgrade 'keras>=3.15.0'

참고