Uscan in devscripts before 2.13.9 allows remote attackers to execute arbitrary code via a crafted tarball.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/64656 | vdb entry |
http://marc.info/?l=oss-security&m=138900586911271&w=2 | mailing list |
http://www.ubuntu.com/usn/USN-2084-1 | vendor advisory |
http://secunia.com/advisories/56579 | third party advisory |
http://www.debian.org/security/2014/dsa-2836 | vendor advisory |
http://secunia.com/advisories/56192 | third party advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/90107 | vdb entry |
http://anonscm.debian.org/gitweb/?p=collab-maint/devscripts.git%3Ba=commitdiff%3Bh=02c6850d973e3e1246fde72edab27f03d63acc52 |