Boletines de Vulnerabilidades

DSA-3407 dpkg - security update


Información sobre el sistema

   
Software afectado Debian

Descripción

Hanno Boeck discovered a stack-based buffer overflow in the dpkg-debcomponent of dpkg, the Debian package management system. This flaw couldpotentially lead to arbitrary code execution if a user or an automatedsystem were tricked into processing a specially crafted Debian binarypackage (.deb) in the old style Debian binary package format.

More info:

https://www.debian.org/security/2015/dsa-3407

Identificadores estándar

Propiedad Valor
CVE CVE-2015-0860 and DSA-3407.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-11-27

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT