CVE-2012-2241: Devscripts Devel Team Devscripts

Medium severity, CVSS 5.0. EPSS: 1.5% chance of exploitation in the next 30 days.

scripts/dget.pl in devscripts before 2.12.3 allows remote attackers to delete arbitrary files via a crafted (1) .dsc or (2) .changes file, probably related to a NULL byte in a filename.

Affected products

  • Devscripts Devel Team Devscripts: up to and including 2.12.2; version 2.7.0 only; version 2.8.14 only; version 2.9.21 only; version 2.9.22 only; version 2.9.23 only; …

Published 2012-10-01. Last modified 2026-06-16.