Computer Security
[EN] securityvulns.ru
no-pyccku



dpkg directory traversal
updated since 11.03.2010
Published:07.01.2011
Source:BUGTRAQ
SecurityVulns ID:10689
Type:client
Level:4/10
Description:Directory traversal on package content extraction.
Affected:DEBIAN : dpkg 1.14
CVE:CVE-2010-1679 (Directory traversal vulnerability in dpkg-source in dpkg before 1.14.31 and 1.15.x allows user-assisted remote attackers to modify arbitrary files via directory traversal sequences in a patch for a source-format 3.0 package.)
 CVE-2010-0396 (Directory traversal vulnerability in the dpkg-source component in dpkg before 1.14.29 allows remote attackers to modify arbitrary files via a crafted Debian source archive.)
Original documentdocumentDEBIAN, [SECURITY] [DSA-2142-1] New dpkg packages fix directory traversal (07.01.2011)
 documentDEBIAN, [SECURITY] [DSA 2011-1] New dpkg packages fix path traversal (11.03.2010)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru