Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
debdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4 allows remote attackers to execute arbitrary code via a crafted tarball file name in the top-level directory of an original (.orig) source tarball of a source package.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Debian ‘devscripts’任意代码执行漏洞
Vulnerability Description
Debian是Debian Project合作组织创建的以Linux或FreeBSD为内核的自由操作系统。 Debian的devscripts中存在漏洞,恶意攻击者可利用该漏洞操控受影响的系统。该漏洞源于借助debdiff.pl脚本源码包的文件名的某些输入传递未被正确过滤。攻击者可利用此漏洞借助特制的源码包执行任意代码。攻击成功可能允许攻击者执行任意代码,但是需要欺骗用户使用有恶意文件的debdiff.pl脚本。
CVSS Information
N/A
Vulnerability Type
N/A