Computer Security
[EN] securityvulns.ru no-pyccku


dpkg directory traversal
updated since 11.03.2010
Published:07.01.2011
Source:
SecurityVulns ID:10689
Type:client
Threat Level:
4/10
Description:Directory traversal on package content extraction.
Affected:DEBIAN : dpkg 1.14
CVE:CVE-2010-1679 (Directory traversal vulnerability in dpkg-source in dpkg before 1.14.31 and 1.15.x allows user-assisted remote attackers to modify arbitrary files via directory traversal sequences in a patch for a source-format 3.0 package.)
 CVE-2010-0396 (Directory traversal vulnerability in the dpkg-source component in dpkg before 1.14.29 allows remote attackers to modify arbitrary files via a crafted Debian source archive.)
Original documentdocumentDEBIAN, [SECURITY] [DSA-2142-1] New dpkg packages fix directory traversal (07.01.2011)
 documentDEBIAN, [SECURITY] [DSA 2011-1] New dpkg packages fix path traversal (11.03.2010)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod