Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-3865

Опубликовано: 30 мая 2014
Источник: nvd
CVSS2: 6.4
EPSS Низкий

Описание

Multiple directory traversal vulnerabilities in dpkg-source in dpkg-dev 1.3.0 allow remote attackers to modify files outside of the intended directories via a source package with a crafted Index: pseudo-header in conjunction with (1) missing --- and +++ header lines or (2) a +++ header line with a blank pathname.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:debian:dpkg-dev:1.3.0:*:*:*:*:*:*:*

EPSS

Процентиль: 90%
0.0529
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-22

Связанные уязвимости

ubuntu
больше 11 лет назад

Multiple directory traversal vulnerabilities in dpkg-source in dpkg-dev 1.3.0 allow remote attackers to modify files outside of the intended directories via a source package with a crafted Index: pseudo-header in conjunction with (1) missing --- and +++ header lines or (2) a +++ header line with a blank pathname.

debian
больше 11 лет назад

Multiple directory traversal vulnerabilities in dpkg-source in dpkg-de ...

github
больше 3 лет назад

Multiple directory traversal vulnerabilities in dpkg-source in dpkg-dev 1.3.0 allow remote attackers to modify files outside of the intended directories via a source package with a crafted Index: pseudo-header in conjunction with (1) missing --- and +++ header lines or (2) a +++ header line with a blank pathname.

EPSS

Процентиль: 90%
0.0529
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-22