CVE-2015-1378: Grml Grml-Debootstrap

High severity, CVSS 7.5. EPSS: 1.7% chance of exploitation in the next 30 days.

cmdlineopts.clp in grml-debootstrap in Debian 0.54, 0.68.x before 0.68.1, 0.7x before 0.78 is sourced without checking that the local directory is writable by non-root users.

Affected products

  • Grml Grml-Debootstrap: version 0.54 only; version 0.68 only; version 0.70 only; version 0.71 only; version 0.72 only; version 0.73 only; …

Published 2017-08-07. Last modified 2026-06-17.