CVE-2012-0210
news
/
advisories
/
forum
/
software
/
advertising
/
search
/
exploits
[EN]
securityvulns.ru
no-pyccku
CVE
CVE-2012-0210
Status
Candidate
Description
debdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4 allows remote attackers to obtain system information and execute arbitrary code via the file name in a (1) .dsc or (2) .changes file.
Severity
High
CVSS score
9,3
CVSS vector
(AV:N/AC:M/Au:N/C:C/I:C/A:C)
Phase
Assigned (14.12.2011)
NVD:
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2012-0210
References
BID :
52029
CONFIRM :
http://anonscm.debian.org/gitweb/?p=devscripts/dev...
DEBIAN :
DSA-2409
OSVDB :
79319
SECUNIA :
47955
SECUNIA :
48039
UBUNTU :
USN-1366-1
XF :
devscripts-dsc-code-execution(73215)
SecurityVulns:
Debian debdiff multiple security vulnerabilities
About
|
Terms of use
|
Privacy Policy
©
SecurityVulns
,
3APA3A
, Vladimir Dubrovin
Nizhny Novgorod
Enter your search terms
Web
securityvulns.com
Submit search form