Lucene search

K
f5F5F5:K23439402
HistoryJul 08, 2022 - 12:00 a.m.

K23439402 : Debian package management system vulnerability CVE-2022-1664

2022-07-0800:00:00
my.f5.com
21

9.3 High

AI Score

Confidence

High

0.009 Low

EPSS

Percentile

82.4%

Security Advisory Description

Dpkg::Source::Archive in dpkg, the Debian package management system, before version 1.21.8, 1.20.10, 1.19.8, 1.18.26 is prone to a directory traversal vulnerability. When extracting untrusted source packages in v2 and v3 source package formats that include a debian.tar, the in-place extraction can lead to directory traversal situations on specially crafted orig.tar and debian.tar tarballs. (CVE-2022-1664)

Impact

There is no impact; F5 products are not affected by this vulnerability.