Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-363x-qxhw-jjx9

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Aptdaemon 0.43 and earlier in Ubuntu 11.04, 11.10, and 12.04 LTS does not authenticate packages when the transaction is not simulated, which allows remote attackers to install arbitrary packages via a man-in-the-middle attack.

Aptdaemon 0.43 and earlier in Ubuntu 11.04, 11.10, and 12.04 LTS does not authenticate packages when the transaction is not simulated, which allows remote attackers to install arbitrary packages via a man-in-the-middle attack.

EPSS

Процентиль: 64%
0.00475
Низкий

Дефекты

CWE-287

Связанные уязвимости

ubuntu
больше 13 лет назад

Aptdaemon 0.43 and earlier in Ubuntu 11.04, 11.10, and 12.04 LTS does not authenticate packages when the transaction is not simulated, which allows remote attackers to install arbitrary packages via a man-in-the-middle attack.

nvd
больше 13 лет назад

Aptdaemon 0.43 and earlier in Ubuntu 11.04, 11.10, and 12.04 LTS does not authenticate packages when the transaction is not simulated, which allows remote attackers to install arbitrary packages via a man-in-the-middle attack.

debian
больше 13 лет назад

Aptdaemon 0.43 and earlier in Ubuntu 11.04, 11.10, and 12.04 LTS does ...

EPSS

Процентиль: 64%
0.00475
Низкий

Дефекты

CWE-287