Debian devscripts 'debdiff' Multiple Remote Code Execution Vulnerabilities
BID:52029
Info
Debian devscripts 'debdiff' Multiple Remote Code Execution Vulnerabilities
| Bugtraq ID: | 52029 |
| Class: | Input Validation Error |
| CVE: |
CVE-2012-0210 CVE-2012-0211 CVE-2012-0212 |
| Remote: | Yes |
| Local: | Yes |
| Published: | Feb 15 2012 12:00AM |
| Updated: | Oct 03 2012 11:40AM |
| Credit: | Paul Wise and Raphael Geissert |
| Vulnerable: |
Ubuntu Ubuntu Linux 8.04 LTS sparc Ubuntu Ubuntu Linux 8.04 LTS powerpc Ubuntu Ubuntu Linux 8.04 LTS lpia Ubuntu Ubuntu Linux 8.04 LTS i386 Ubuntu Ubuntu Linux 8.04 LTS amd64 Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 Ubuntu Ubuntu Linux 11.10 i386 Ubuntu Ubuntu Linux 11.10 amd64 Ubuntu Ubuntu Linux 11.04 powerpc Ubuntu Ubuntu Linux 11.04 i386 Ubuntu Ubuntu Linux 11.04 ARM Ubuntu Ubuntu Linux 11.04 amd64 Ubuntu Ubuntu Linux 10.10 powerpc Ubuntu Ubuntu Linux 10.10 i386 Ubuntu Ubuntu Linux 10.10 ARM Ubuntu Ubuntu Linux 10.10 amd64 Ubuntu Ubuntu Linux 10.04 sparc Ubuntu Ubuntu Linux 10.04 powerpc Ubuntu Ubuntu Linux 10.04 i386 Ubuntu Ubuntu Linux 10.04 ARM Ubuntu Ubuntu Linux 10.04 amd64 Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 Debian devscripts 2.10.54 Debian devscripts 2.10.35 lenny6 Debian devscripts 2.10.35 Debian devscripts 2.9.26 etch4 Debian devscripts 2.9.26 Debian devscripts 2.9.25 |
| Not Vulnerable: | |
Discussion
Debian devscripts 'debdiff' Multiple Remote Code Execution Vulnerabilities
Debian devscripts package is prone to multiple remote code-execution vulnerabilities.
Attackers may exploit these issues to execute arbitrary code within the context of the affected application. Failed exploit attempts may result in a denial-of-service condition.
Debian devscripts package is prone to multiple remote code-execution vulnerabilities.
Attackers may exploit these issues to execute arbitrary code within the context of the affected application. Failed exploit attempts may result in a denial-of-service condition.
Exploit / POC
Debian devscripts 'debdiff' Multiple Remote Code Execution Vulnerabilities
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Debian devscripts 'debdiff' Multiple Remote Code Execution Vulnerabilities
Solution:
Vendor updates are available. Please see the references for more information.
Solution:
Vendor updates are available. Please see the references for more information.
References
Debian devscripts 'debdiff' Multiple Remote Code Execution Vulnerabilities
References:
References:
- Debian Homepage (Debian)