{"id":"GHSA-xjqr-g762-pxwp","summary":"containernetworking/cni improper limitation of path name","details":"An improper limitation of path name flaw was found in containernetworking/cni in versions before 0.8.1. When specifying the plugin to load in the 'type' field in the network configuration, it is possible to use special elements such as \"../\" separators to reference binaries elsewhere on the system. This flaw allows an attacker to execute other existing binaries other than the cni plugins/types, such as 'reboot'. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.\n### Specific Go Packages Affected\ngithub.com/containernetworking/cni/pkg/invoke","aliases":["CVE-2021-20206","GO-2022-0230","SNYK-GOLANG-GITHUBCOMCONTAINERNETWORKINGCNIPKGINVOKE-1070549"],"modified":"2026-05-07T04:56:56.622540891Z","published":"2022-02-15T01:57:18Z","database_specific":{"severity":"HIGH","github_reviewed":true,"github_reviewed_at":"2021-05-18T21:07:06Z","nvd_published_at":"2021-03-26T22:15:00Z","cwe_ids":["CWE-20","CWE-22"]},"references":[{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2021-20206"},{"type":"WEB","url":"https://github.com/containernetworking/cni/pull/808"},{"type":"WEB","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1919391"},{"type":"PACKAGE","url":"https://github.com/containernetworking/cni"},{"type":"WEB","url":"https://pkg.go.dev/vuln/GO-2022-0230"},{"type":"WEB","url":"https://snyk.io/vuln/SNYK-GOLANG-GITHUBCOMCONTAINERNETWORKINGCNIPKGINVOKE-1070549"}],"affected":[{"package":{"name":"github.com/containernetworking/cni","ecosystem":"Go","purl":"pkg:golang/github.com/containernetworking/cni"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"0.8.1"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2022/02/GHSA-xjqr-g762-pxwp/GHSA-xjqr-g762-pxwp.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H"}]}