CVE-2014-3864
EPSS 0.61%dpkg - security update
Published: 5/30/2014Modified: 4/28/2026
Also known as:DEBIAN-CVE-2014-3864
Description
Directory traversal vulnerability in dpkg-source in dpkg-dev 1.3.0 allows remote attackers to modify files outside of the intended directories via a crafted source package that lacks a --- header line.
Affected packages (2)
- Debian/dpkgfrom 0, < 1.17.10
- Debian/dpkgfrom 0, < 1.15.11