debdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4 allows remote attackers to execute arbitrary code via a crafted tarball file name in the top-level directory of an original (.orig) source tarball of a source package.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: debian

Published:

Updated: 2024-08-06T18:16:19.612Z

Reserved: 2011-12-14T00:00:00

Link: CVE-2012-0211

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2012-06-16T00:55:05.920

Modified: 2025-04-11T00:51:21.963

Link: CVE-2012-0211

cve-icon Redhat

No data.