Vulnerability Bulletins

DSA-3217 dpkg - security update

   
Affected software Debian
 
Jann Horn discovered that the source package integrity verification indpkg-source can be bypassed via a specially crafted Debian sourcecontrol file (.dsc). Note that this flaw only affects extraction oflocal Debian source packages via dpkg-source but not the installation ofpackages from the Debian archive.

More info:

https://www.debian.org/security/2015/dsa-3217