Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-3865

Multiple directory traversal vulnerabilities in dpkg-source in dpkg-dev 1.3.0 allow remote attackers to modify files outside of the intended directories via a source package with a crafted Index: pseudo-header in conjunction with (1) missing --- and +++ header lines or (2) a +++ header line with a blank pathname.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.075
EPSS Ranking 91.5%
CVSS Severity
CVSS v2 Score 6.4
Products affected by CVE-2014-3865
  • Debian » Dpkg-Dev » Version: 1.3.0
    cpe:2.3:a:debian:dpkg-dev:1.3.0


Contact Us

Shodan ® - All rights reserved