Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pgxw-xqx6-crgv

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

apt 0.8.16, 0.9.7, and possibly other versions does not properly handle InRelease files, which allows man-in-the-middle attackers to modify packages before installation via unknown vectors, possibly related to integrity checking and the use of third-party repositories.

apt 0.8.16, 0.9.7, and possibly other versions does not properly handle InRelease files, which allows man-in-the-middle attackers to modify packages before installation via unknown vectors, possibly related to integrity checking and the use of third-party repositories.

EPSS

Процентиль: 69%
0.01343
Низкий

Дефекты

CWE-20

Связанные уязвимости

ubuntu
больше 13 лет назад

apt 0.8.16, 0.9.7, and possibly other versions does not properly handle InRelease files, which allows man-in-the-middle attackers to modify packages before installation via unknown vectors, possibly related to integrity checking and the use of third-party repositories.

nvd
больше 13 лет назад

apt 0.8.16, 0.9.7, and possibly other versions does not properly handle InRelease files, which allows man-in-the-middle attackers to modify packages before installation via unknown vectors, possibly related to integrity checking and the use of third-party repositories.

debian
больше 13 лет назад

apt 0.8.16, 0.9.7, and possibly other versions does not properly handl ...

EPSS

Процентиль: 69%
0.01343
Низкий

Дефекты

CWE-20