Directory traversal vulnerability in uupdate in devscripts 2.14.1 allows remote attackers to modify arbitrary files via a crafted .orig.tar file, related to a symlink.Referenceshttp://www.openwall.com/lists/oss-security/2014/01/31/11https://bugzilla.redhat.com/show_bug.cgi?id=1059947http://www.securityfocus.com/bid/65260https://exchange.xforce.ibmcloud.com/vulnerabilities/90842http://www.openwall.com/lists/oss-security/2014/01/31/7http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=737160http://www.ubuntu.com/usn/USN-2649-1http://osvdb.org/102748