UbuntuUpdates.org

Package "dpkg-dev"

Name: dpkg-dev

Description:

Debian package development tools

Latest version: 1.21.1ubuntu2.6
Release: jammy (22.04)
Level: security
Repository: main
Head package: dpkg
Homepage: https://wiki.debian.org/Teams/Dpkg

Links


Download "dpkg-dev"


Other versions of "dpkg-dev" in Jammy

Repository Area Version
base main 1.21.1ubuntu2
updates main 1.21.1ubuntu2.6

Changelog

Version: 1.21.1ubuntu2.6 2025-09-24 16:07:04 UTC

  dpkg (1.21.1ubuntu2.6) jammy-security; urgency=medium

  [ Joy Latten ]
  * SECURITY UPDATE:
  - Fix cleanup for control member with restricted directories. LP: #2122053
  - Fixes CVE-2025-6297

 -- Serge Hallyn <email address hidden> Tue, 09 Sep 2025 15:09:16 -0500

Source diff to previous version
2122053 dpkg-deb: Fix cleanup for control member with restricted directories
CVE-2025-6297 It was discovered that dpkg-deb does not properly sanitize directory permissions when extracting a control member into a temporary directory, which i

Version: 1.21.1ubuntu2.1 2022-05-26 13:06:24 UTC

  dpkg (1.21.1ubuntu2.1) jammy-security; urgency=medium

  * SECURITY UPDATE: Directory traversal issue in dpkg-source
    - scripts/Dpkg/Source/Archive.pm, scripts/t/Dpkg_Source_Archive.t:
      Prevent directory traversal for in-place extracts.
    - CVE-2022-1664

 -- Marc Deslauriers <email address hidden> Wed, 25 May 2022 07:11:51 -0400

CVE-2022-1664 directory traversal for in-place extracts with untrusted v2 and v3 source packages with debian.tar



About   -   Send Feedback to @ubuntu_updates