Candidate: CVE-2015-5704 PublicDate: 2017-09-25 21:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-5704 http://www.openwall.com/lists/oss-security/2015/08/01/1 Description: scripts/licensecheck.pl in devscripts before 2.15.7 allows local users to execute arbitrary shell commands. Ubuntu-Description: Notes: sbeattie> introduce in 2.15.5 Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=794260 Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H [7.8 HIGH] Patches_devscripts: upstream_devscripts: released (2.15.7) precise_devscripts: not-affected (pre-2.15.5) trusty_devscripts: not-affected (pre-2.15.5) trusty/esm_devscripts: not-affected (pre-2.15.5) vivid_devscripts: not-affected (pre-2.15.5) devel_devscripts: not-affected (2.15.8)