Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2012-0944

Опубликовано: 04 июн. 2012
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3

Описание

Aptdaemon 0.43 and earlier in Ubuntu 11.04, 11.10, and 12.04 LTS does not authenticate packages when the transaction is not simulated, which allows remote attackers to install arbitrary packages via a man-in-the-middle attack.

РелизСтатусПримечание
devel

released

0.43+bzr790-0ubuntu1
hardy

DNE

lucid

not-affected

maverick

not-affected

natty

released

0.41+bzr661-0ubuntu0.2
oneiric

released

0.43+bzr697-0ubuntu1.2
upstream

needs-triage

Показывать по

EPSS

Процентиль: 66%
0.01211
Низкий

4.3 Medium

CVSS2

Связанные уязвимости

nvd
около 14 лет назад

Aptdaemon 0.43 and earlier in Ubuntu 11.04, 11.10, and 12.04 LTS does not authenticate packages when the transaction is not simulated, which allows remote attackers to install arbitrary packages via a man-in-the-middle attack.

debian
около 14 лет назад

Aptdaemon 0.43 and earlier in Ubuntu 11.04, 11.10, and 12.04 LTS does ...

github
больше 4 лет назад

Aptdaemon 0.43 and earlier in Ubuntu 11.04, 11.10, and 12.04 LTS does not authenticate packages when the transaction is not simulated, which allows remote attackers to install arbitrary packages via a man-in-the-middle attack.

EPSS

Процентиль: 66%
0.01211
Низкий

4.3 Medium

CVSS2