Security Advisory

CVE-2014-8625

6.8

Vulnerability Description

Multiple format string vulnerabilities in the parse_error_msg function in parsehelp.c in dpkg before 1.17.22 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the (1) package or (2) architecture name.
Published Date January 20, 2015
Official Source NIST NVD Advisory