Vulnerabilities > Debian > Dpkg

DATE CVE VULNERABILITY TITLE RISK
2010-06-08 CVE-2004-2768 Permissions, Privileges, and Access Controls vulnerability in Debian Dpkg 1.9.21
dpkg 1.9.21 does not properly reset the metadata of a file during replacement of the file in a package upgrade, which might allow local users to gain privileges by creating a hard link to a vulnerable (1) setuid file, (2) setgid file, or (3) device, a related issue to CVE-2010-2059.
local
low complexity
debian CWE-264
7.2
2010-03-15 CVE-2010-0396 Path Traversal vulnerability in Debian Dpkg
Directory traversal vulnerability in the dpkg-source component in dpkg before 1.14.29 allows remote attackers to modify arbitrary files via a crafted Debian source archive.
network
debian CWE-22
5.8