CVE-2014-0471

EUVD-2014-0509
Directory traversal vulnerability in the unpacking functionality in dpkg before 1.15.9, 1.16.x before 1.16.13, and 1.17.x before 1.17.8 allows remote attackers to write arbitrary files via a crafted source package, related to "C-style filename quoting."
Path Traversal
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:N/I:P/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 52%
Affected Products (NVD)
VendorProductVersion
debiandpkg
𝑥
≤ 1.15.8.8
debiandpkg
1.9.1
debiandpkg
1.9.2
debiandpkg
1.9.3
debiandpkg
1.9.7
debiandpkg
1.9.8
debiandpkg
1.9.9
debiandpkg
1.9.10
debiandpkg
1.9.11
debiandpkg
1.9.12
debiandpkg
1.9.13
debiandpkg
1.9.14
debiandpkg
1.9.15
debiandpkg
1.9.16
debiandpkg
1.9.17
debiandpkg
1.9.18
debiandpkg
1.9.19
debiandpkg
1.9.20
debiandpkg
1.9.21
debiandpkg
1.10
debiandpkg
1.10.1
debiandpkg
1.10.2
debiandpkg
1.10.3
debiandpkg
1.10.4
debiandpkg
1.10.5
debiandpkg
1.10.6
debiandpkg
1.10.7
debiandpkg
1.10.8
debiandpkg
1.10.9
debiandpkg
1.10.11
debiandpkg
1.10.12
debiandpkg
1.10.13
debiandpkg
1.10.14
debiandpkg
1.10.15
debiandpkg
1.10.16
debiandpkg
1.10.17
debiandpkg
1.10.18
debiandpkg
1.10.18.1
debiandpkg
1.10.19
debiandpkg
1.10.20
debiandpkg
1.10.21
debiandpkg
1.10.22
debiandpkg
1.10.23
debiandpkg
1.10.24
debiandpkg
1.10.25
debiandpkg
1.10.26
debiandpkg
1.10.27
debiandpkg
1.10.28
debiandpkg
1.13.0
debiandpkg
1.13.1
debiandpkg
1.13.2
debiandpkg
1.13.3
debiandpkg
1.13.4
debiandpkg
1.13.5
debiandpkg
1.13.6
debiandpkg
1.13.7
debiandpkg
1.13.8
debiandpkg
1.13.9
debiandpkg
1.13.10
debiandpkg
1.13.11
debiandpkg
1.13.11.1
debiandpkg
1.13.12
debiandpkg
1.13.13
debiandpkg
1.13.14
debiandpkg
1.13.15
debiandpkg
1.13.16
debiandpkg
1.13.17
debiandpkg
1.13.18
debiandpkg
1.13.19
debiandpkg
1.13.20
debiandpkg
1.13.21
debiandpkg
1.13.22
debiandpkg
1.13.23
debiandpkg
1.13.24
debiandpkg
1.13.25
debiandpkg
1.14.0
debiandpkg
1.14.1
debiandpkg
1.14.2
debiandpkg
1.14.3
debiandpkg
1.14.4
debiandpkg
1.14.5
debiandpkg
1.14.6
debiandpkg
1.14.7
debiandpkg
1.14.8
debiandpkg
1.14.9
debiandpkg
1.14.10
debiandpkg
1.14.11
debiandpkg
1.14.12
debiandpkg
1.14.13
debiandpkg
1.14.14
debiandpkg
1.14.15
debiandpkg
1.14.16
debiandpkg
1.14.16.1
debiandpkg
1.14.16.2
debiandpkg
1.14.16.3
debiandpkg
1.14.16.4
debiandpkg
1.14.16.5
debiandpkg
1.14.16.6
debiandpkg
1.14.17
debiandpkg
1.14.18
debiandpkg
1.14.19
debiandpkg
1.14.20
debiandpkg
1.14.21
debiandpkg
1.14.22
debiandpkg
1.14.23
debiandpkg
1.14.24
debiandpkg
1.14.25
debiandpkg
1.14.26
debiandpkg
1.14.27
debiandpkg
1.14.28
debiandpkg
1.14.29
debiandpkg
1.14.30
debiandpkg
1.15.0
debiandpkg
1.15.1
debiandpkg
1.15.2
debiandpkg
1.15.3
debiandpkg
1.15.3.1
debiandpkg
1.15.4
debiandpkg
1.15.4.1
debiandpkg
1.15.5
debiandpkg
1.15.5.1
debiandpkg
1.15.5.2
debiandpkg
1.15.5.3
debiandpkg
1.15.5.4
debiandpkg
1.15.5.5
debiandpkg
1.15.5.6
debiandpkg
1.15.6
debiandpkg
1.15.6.1
debiandpkg
1.15.7
debiandpkg
1.15.7.1
debiandpkg
1.15.7.2
debiandpkg
1.15.8
debiandpkg
1.15.8.1
debiandpkg
1.15.8.2
debiandpkg
1.15.8.3
debiandpkg
1.15.8.4
debiandpkg
1.15.8.5
debiandpkg
1.15.8.6
debiandpkg
1.15.8.7
debiandpkg
1.15.8.9
debiandpkg
1.16.0
debiandpkg
1.16.0.1
debiandpkg
1.16.0.2
debiandpkg
1.16.0.3
debiandpkg
1.16.1
debiandpkg
1.16.1.1
debiandpkg
1.16.1.2
debiandpkg
1.16.2
debiandpkg
1.16.3
debiandpkg
1.16.4
debiandpkg
1.16.4.1
debiandpkg
1.16.4.2
debiandpkg
1.16.4.3
debiandpkg
1.16.5
debiandpkg
1.16.6
debiandpkg
1.16.7
debiandpkg
1.16.8
debiandpkg
1.16.9
debiandpkg
1.16.10
debiandpkg
1.16.11
debiandpkg
1.16.12
debiandpkg
1.17.0
debiandpkg
1.17.1
debiandpkg
1.17.2
debiandpkg
1.17.3
debiandpkg
1.17.4
debiandpkg
1.17.5
debiandpkg
1.17.6
debiandpkg
1.17.7
canonicalubuntu_linux
10.04
canonicalubuntu_linux
12.04
canonicalubuntu_linux
12.10
canonicalubuntu_linux
13.10
canonicalubuntu_linux
14.04
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
dpkg
bookworm
1.21.22
fixed
bullseye
1.20.13
fixed
bullseye (security)
1.20.10
fixed
sid
1.22.11
fixed
trixie
1.22.11
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
dpkg
lucid
Fixed 1.15.5.6ubuntu4.7
released
precise
Fixed 1.16.1.2ubuntu7.3
released
quantal
Fixed 1.16.7ubuntu6.1
released
saucy
Fixed 1.16.12ubuntu1.1
released
trusty
Fixed 1.17.5ubuntu5.1
released