First published: Fri Jan 31 2014(Updated: )
Directory traversal vulnerability in uupdate in devscripts 2.14.1 allows remote attackers to modify arbitrary files via a crafted .orig.tar file, related to a symlink.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Debian devscripts | =2.14.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2014-1833 is considered moderate due to its directory traversal nature that allows unauthorized file modifications.
To fix CVE-2014-1833, you should update the devscripts package to version 2.14.2 or later.
CVE-2014-1833 is classified as a directory traversal vulnerability affecting the uupdate tool in devscripts.
CVE-2014-1833 specifically affects the devscripts version 2.14.1.
The CVE-2014-1833 vulnerability was reported by Jakub Wilk.