CVE-2013-7050
13.12.2013, 18:07
The get_main_source_dir function in scripts/uscan.pl in devscripts before 2.13.8, when using USCAN_EXCLUSION, allows remote attackers to execute arbitrary commands via shell metacharacters in a directory name.
| Vendor | Product | Version |
|---|---|---|
| devscripts_devel_team | devscripts | 𝑥 ≤ 2.13.7 |
| devscripts_devel_team | devscripts | 2.13.0 |
| devscripts_devel_team | devscripts | 2.13.1 |
| devscripts_devel_team | devscripts | 2.13.2 |
| devscripts_devel_team | devscripts | 2.13.3 |
| devscripts_devel_team | devscripts | 2.13.4 |
| devscripts_devel_team | devscripts | 2.13.5 |
| devscripts_devel_team | devscripts | 2.13.6 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
References