Oval Definition:oval:org.mitre.oval:def:13650
Revision Date:2014-06-30Version:21
Title:USN-847-1 -- devscripts vulnerability
Description:Raphael Geissert discovered that uscan, a part of devscripts, did not properly sanitize its input when processing pathnames. If uscan processed a crafted filename for a file on a remote server, an attacker could execute arbitrary code with the privileges of the user invoking the program.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2009-2946
USN-847-1
USN-847-1
Platform(s):Ubuntu 8.04
Ubuntu 8.10
Ubuntu 9.04
Product(s):devscripts
Definition Synopsis
  • Release section
  • Ubuntu 8.10 is installed
  • AND Supported architectures section
  • Installed architecture is sparc
  • OR Installed architecture is i386
  • OR Installed architecture is amd64
  • OR Installed architecture is lpia
  • OR Installed architecture is powerpc
  • AND devscripts DPKG is earlier than 2.10.26ubuntu15.2
  • OR Release section
  • Ubuntu 8.04 is installed
  • AND Supported architectures section
  • Installed architecture is sparc
  • OR Installed architecture is i386
  • OR Installed architecture is amd64
  • OR Installed architecture is lpia
  • OR Installed architecture is powerpc
  • AND devscripts DPKG is earlier than 2.10.11ubuntu5.8.04.4
  • OR Release section
  • Ubuntu 9.04 is installed
  • AND Supported architectures section
  • Installed architecture is sparc
  • OR Installed architecture is i386
  • OR Installed architecture is amd64
  • OR Installed architecture is lpia
  • OR Installed architecture is powerpc
  • AND devscripts DPKG is earlier than 2.10.39ubuntu7.1
  • BACK