Release date:
Updated on:
Affected Systems:
Debian Linux 6.x
Description:
--------------------------------------------------------------------------------
Bugtraq id: 64656
CVE (CAN) ID: CVE-2013-6888
Debian is a popular Linux release version.
Some uscan In the Debian devscripts software package does not correctly verify the downloading of the upstream tarball. There is a security vulnerability in implementation. After successful exploitation, remote code execution may occur.
<* Source: Debian
Link: http://www.securelist.com/en/advisories/56192
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Debian
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.debian.org/security/2014/dsa-2836
Http://www.debian.org/security/