devscripts contains a flaw that is triggered when certain input passed via dget is not properly verified during the handling of .dsc and .change files. With a specially crafted source package, a context-dependent attacker can execute arbitrary code.
Currently, there are no known workarounds or upgrades to correct this issue. However, Debian has released updated packages to address this vulnerability. Check the vendor advisory or solution in the references section.