CVE-2012-2242: Devscripts Devel Team Devscripts
Medium severity, CVSS 6.8. EPSS: 1.7% chance of exploitation in the next 30 days.
scripts/dget.pl in devscripts before 2.10.73 allows remote attackers to execute arbitrary commands via a crafted (1) .dsc or (2) .changes file, related to "arguments to external commands" that are not properly escaped, a different vulnerability than CVE-2012-2240.
Affected products
- Devscripts Devel Team Devscripts: up to and including 2.10.72; version 2.10.0 only; version 2.10.1 only; version 2.10.3 only; version 2.10.6 only; version 2.10.7 only; …
Published 2012-10-01. Last modified 2026-06-16.