| Title | devscripts の scripts/dget.pl における任意のファイルを削除される脆弱性 |
|---|---|
| Summary | devscripts の scripts/dget.pl には、任意のファイルを削除される脆弱性が存在します。 |
| Possible impacts | 第三者により、巧妙に細工された .dsc または .changes ファイルを介して、任意のファイルを削除される可能性があります。 |
| Solution | ベンダ情報および参考情報を参照して適切な対策を実施してください。 |
| Publication Date | Oct. 1, 2012, midnight |
| Registration Date | Oct. 2, 2012, 4:08 p.m. |
| Last Update | Nov. 9, 2012, 4:04 p.m. |
| CVSS2.0 : 警告 | |
| Score | 5 |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:N/I:P/A:N |
| Devscripts Devel Team |
| devscripts 2.12.3 未満 |
| No | Changed Details | Date of change |
|---|---|---|
| 0 | [2012年10月02日] 掲載 [2012年11月09日] ベンダ情報:Ubuntu (USN-1593-1) を追加 |
Feb. 17, 2018, 10:37 a.m. |
| Summary | scripts/dget.pl in devscripts before 2.12.3 allows remote attackers to delete arbitrary files via a crafted (1) .dsc or (2) .changes file, probably related to a NULL byte in a filename. |
|---|---|
| Publication Date | Oct. 1, 2012, 9:55 a.m. |
| Registration Date | Jan. 28, 2021, 2:57 p.m. |
| Last Update | Nov. 21, 2024, 10:38 a.m. |
| Configuration1 | or higher | or less | more than | less than | |
| cpe:2.3:a:devscripts_devel_team:devscripts:2.11.6:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.9.26:etch2:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.28:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.59:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.62:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.65.1:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.24:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.48:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.16:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.61:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.54:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.9.27:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.9.23:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.11.2:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.56:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.11.9:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.9.21:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.43:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.7:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.8:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.12.0:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.9.26:etch1:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.64:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.46:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.55:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.50:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.34:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.49:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.36:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.12:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.1:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.18:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.11.1:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.33:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.11.7:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.11.4:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.27:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.11.8:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.35:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.13:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.25:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.68:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.20:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.53:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:*:*:*:*:*:*:*:* | 2.12.2 | ||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.17:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.11:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.9.26:etch5:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.52:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.22:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.67:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.31:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.15:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.44:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.11.3:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.8.14:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.10:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.9.24:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.66:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.47:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.29:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.30:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.42:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.57:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.9.26:etch4:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.7.0:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.19:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.6:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.23:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.21:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.41:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.9.25:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.39:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.12.1:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.9:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.51:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.9.22:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.60:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.26:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.3:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.11.5:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.32:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.14:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.11.0:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.58:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.0:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.38:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.40:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.45:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.63:*:*:*:*:*:*:* | |||||
| cpe:2.3:a:devscripts_devel_team:devscripts:2.10.18.1:*:*:*:*:*:*:* | |||||