CVE-2010-0396

EUVD-2010-0427
Directory traversal vulnerability in the dpkg-source component in dpkg before 1.14.29 allows remote attackers to modify arbitrary files via a crafted Debian source archive.
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 59%
Affected Products (NVD)
VendorProductVersion
debiandpkg
𝑥
≤ 1.14.28
debiandpkg
1.9.19
debiandpkg
1.9.20
debiandpkg
1.9.21
debiandpkg
1.10
debiandpkg
1.10.1
debiandpkg
1.10.2
debiandpkg
1.10.3
debiandpkg
1.10.4
debiandpkg
1.10.5
debiandpkg
1.10.6
debiandpkg
1.10.7
debiandpkg
1.10.8
debiandpkg
1.10.9
debiandpkg
1.10.10
debiandpkg
1.10.11
debiandpkg
1.10.12
debiandpkg
1.10.13
debiandpkg
1.10.14
debiandpkg
1.10.15
debiandpkg
1.10.16
debiandpkg
1.10.17
debiandpkg
1.10.18
debiandpkg
1.10.18.1
debiandpkg
1.10.19
debiandpkg
1.10.20
debiandpkg
1.10.21
debiandpkg
1.10.22
debiandpkg
1.10.23
debiandpkg
1.10.24
debiandpkg
1.10.25
debiandpkg
1.10.26
debiandpkg
1.10.27
debiandpkg
1.10.28
debiandpkg
1.13.0
debiandpkg
1.13.1
debiandpkg
1.13.2
debiandpkg
1.13.3
debiandpkg
1.13.4
debiandpkg
1.13.5
debiandpkg
1.13.6
debiandpkg
1.13.7
debiandpkg
1.13.8
debiandpkg
1.13.9
debiandpkg
1.13.10
debiandpkg
1.13.11
debiandpkg
1.13.11.1
debiandpkg
1.13.12
debiandpkg
1.13.13
debiandpkg
1.13.14
debiandpkg
1.13.15
debiandpkg
1.13.16
debiandpkg
1.13.17
debiandpkg
1.13.18
debiandpkg
1.13.19
debiandpkg
1.13.20
debiandpkg
1.13.21
debiandpkg
1.13.22
debiandpkg
1.13.23
debiandpkg
1.13.24
debiandpkg
1.13.25
debiandpkg
1.14.0
debiandpkg
1.14.1
debiandpkg
1.14.2
debiandpkg
1.14.3
debiandpkg
1.14.4
debiandpkg
1.14.5
debiandpkg
1.14.6
debiandpkg
1.14.7
debiandpkg
1.14.8
debiandpkg
1.14.9
debiandpkg
1.14.10
debiandpkg
1.14.11
debiandpkg
1.14.12
debiandpkg
1.14.13
debiandpkg
1.14.14
debiandpkg
1.14.15
debiandpkg
1.14.16
debiandpkg
1.14.16.1
debiandpkg
1.14.16.2
debiandpkg
1.14.16.3
debiandpkg
1.14.16.4
debiandpkg
1.14.16.5
debiandpkg
1.14.16.6
debiandpkg
1.14.17
debiandpkg
1.14.18
debiandpkg
1.14.19
debiandpkg
1.14.20
debiandpkg
1.14.21
debiandpkg
1.14.22
debiandpkg
1.14.23
debiandpkg
1.14.24
debiandpkg
1.14.25
debiandpkg
1.14.26
debiandpkg
1.14.27
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
dpkg
bookworm
1.21.22
fixed
bullseye
1.20.13
fixed
bullseye (security)
1.20.10
fixed
sid
1.22.11
fixed
trixie
1.22.11
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
dpkg
dapper
Fixed 1.13.11ubuntu7.1
released
hardy
Fixed 1.14.16.6ubuntu4.1
released
intrepid
Fixed 1.14.20ubuntu6.3
released
jaunty
Fixed 1.14.24ubuntu1.1
released
karmic
Fixed 1.15.4ubuntu2.1
released