UbuntuUpdates.org

Package "debian-goodies"

Name: debian-goodies

Description:

Small toolbox-style utilities for Debian systems

Latest version: 0.84ubuntu0.1
Release: focal (20.04)
Level: security
Repository: main

Links


Download "debian-goodies"


Other versions of "debian-goodies" in Focal

Repository Area Version
base main 0.84
updates main 0.84ubuntu0.1

Changelog

Version: 0.84ubuntu0.1 2024-03-25 18:06:53 UTC

  debian-goodies (0.84ubuntu0.1) focal-security; urgency=medium

  * SECURITY UPDATE: Arbitrary code execution
    - 495eaafa94d2b4cbee4eed01cd78238e311d096b fix shell injection
      via crafted .deb in debmany/debmany.
    - CVE-2023-27635

 -- Leonidas Da Silva Barbosa <email address hidden> Wed, 20 Mar 2024 13:21:58 -0300

CVE-2023-27635 debmany in debian-goodies 0.88.1 allows attackers to execute arbitrary shell commands (because of an eval call) via a crafted .deb file. (The path is



About   -   Send Feedback to @ubuntu_updates