Описание
Missing input validation in the ar/tar implementations of APT before version 2.1.2 could result in denial of service when processing specially crafted deb files.
Ссылки
- Issue TrackingThird Party Advisory
- ExploitThird Party Advisory
- Mailing ListVendor Advisory
- PatchVendor Advisory
- Release NotesVendor Advisory
- Third Party Advisory
- Third Party Advisory
- Issue TrackingThird Party Advisory
- ExploitThird Party Advisory
- Mailing ListVendor Advisory
- PatchVendor Advisory
- Release NotesVendor Advisory
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Одно из
Одно из
EPSS
5.5 Medium
CVSS3
4.3 Medium
CVSS2
Дефекты
Связанные уязвимости
Missing input validation in the ar/tar implementations of APT before version 2.1.2 could result in denial of service when processing specially crafted deb files.
Missing input validation in the ar/tar implementations of APT before v ...
Missing input validation in the ar/tar implementations of APT before version 2.1.2 could result in denial of service when processing specially crafted deb files.
Уязвимость компонента ar/tar программы для установки, обновления и удаления программных пакетов apt, связанная с недостатком механизма проверки вводимых данных, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
5.5 Medium
CVSS3
4.3 Medium
CVSS2