#VU113836 Incorrect default permissions in dpkg - CVE-2025-6297
Published: August 12, 2025
dpkg
Debian Package Manager
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to the way the package manager handles temporary files during extraction into a temp directory. A remote attacker can trick the victim into installing a specially crafted package and consume all available disk space, leading to a denial of service condition.