Show filters
15 Total Results
Displaying 11-15 of 15
Sort by:
Attacker Value
Unknown
CVE-2011-0402
Disclosure Date: January 11, 2011 (last updated October 04, 2023)
dpkg-source in dpkg before 1.14.31 and 1.15.x allows user-assisted remote attackers to modify arbitrary files via a symlink attack on unspecified files in the .pc directory.
0
Attacker Value
Unknown
CVE-2010-1679
Disclosure Date: January 11, 2011 (last updated October 04, 2023)
Directory traversal vulnerability in dpkg-source in dpkg before 1.14.31 and 1.15.x allows user-assisted remote attackers to modify arbitrary files via directory traversal sequences in a patch for a source-format 3.0 package.
0
Attacker Value
Unknown
CVE-2004-2768
Disclosure Date: June 08, 2010 (last updated October 04, 2023)
dpkg 1.9.21 does not properly reset the metadata of a file during replacement of the file in a package upgrade, which might allow local users to gain privileges by creating a hard link to a vulnerable (1) setuid file, (2) setgid file, or (3) device, a related issue to CVE-2010-2059.
0
Attacker Value
Unknown
CVE-2010-0396
Disclosure Date: March 15, 2010 (last updated October 04, 2023)
Directory traversal vulnerability in the dpkg-source component in dpkg before 1.14.29 allows remote attackers to modify arbitrary files via a crafted Debian source archive.
0
Attacker Value
Unknown
CVE-2008-4950
Disclosure Date: November 05, 2008 (last updated November 08, 2023)
gccross in dpkg-cross 2.3.0 allows local users to overwrite arbitrary files via a symlink attack on the tmp/gccross2.log temporary file. NOTE: the vendor disputes this vulnerability, stating that "There is no sense in this bug - the script ... is called under specific cross-building environments within a chroot.
0