CVE-2012-0210
- EPSS 4.51%
- Published 16.06.2012 00:55:05
- Last modified 11.04.2025 00:51:21
debdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4 allows remote attackers to obtain system information and execute arbitrary code via the file name in a (1) .dsc or (2) .changes file.
CVE-2012-0211
- EPSS 10.65%
- Published 16.06.2012 00:55:05
- Last modified 11.04.2025 00:51:21
debdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4 allows remote attackers to execute arbitrary code via a crafted tarball file name in the top-level directory of an original (.orig) source tarball of a source package.
CVE-2012-0212
- EPSS 10.65%
- Published 16.06.2012 00:55:05
- Last modified 11.04.2025 00:51:21
debdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4 allows remote attackers to execute arbitrary code via shell metacharacters in the file name argument.
CVE-2009-2946
- EPSS 0.88%
- Published 04.09.2009 20:30:00
- Last modified 09.04.2025 00:30:58
Eval injection vulnerability in scripts/uscan.pl before Rev 1984 in devscripts allows remote attackers to execute arbitrary Perl code via crafted pathnames on distribution servers for upstream source code used in Debian GNU/Linux packages.