USN-6714-1: Debian Goodies vulnerability
It was discovered that debmany in Debian Goodies incorrectly handled certain deb files. An attacker could possibly use this issue to execute arbitrary shell commands.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-6714-1?
The severity of USN-6714-1 is considered to be high due to the potential for arbitrary command execution.
How do I fix USN-6714-1?
To fix USN-6714-1, upgrade the debian-goodies package to versions 0.88.1ubuntu1.2, 0.87ubuntu1.1, or 0.84ubuntu0.1, depending on your Ubuntu version.
Which versions of Ubuntu are affected by USN-6714-1?
USN-6714-1 affects Ubuntu versions 23.10, 22.04, and 20.04 with specific versions of the debian-goodies package.
What is the cause of the vulnerability USN-6714-1?
The vulnerability USN-6714-1 is caused by the improper handling of certain deb files in the debmany utility of debian-goodies.
Can USN-6714-1 be exploited remotely?
Yes, an attacker could potentially exploit USN-6714-1 remotely to execute arbitrary shell commands.