Описание
Missing input validation in the ar/tar implementations of APT before version 2.1.2 could result in denial of service when processing specially crafted deb files.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 1.6.12ubuntu0.1 |
| devel | released | 2.1.2 |
| eoan | released | 1.9.4ubuntu0.1 |
| esm-infra-legacy/trusty | released | 1.0.1ubuntu2.24+esm1 |
| esm-infra/bionic | released | 1.6.12ubuntu0.1 |
| esm-infra/focal | released | 2.0.2ubuntu0.1 |
| esm-infra/xenial | released | 1.2.32ubuntu0.1 |
| focal | released | 2.0.2ubuntu0.1 |
| precise/esm | not-affected | 0.8.16~exp12ubuntu10.29 |
| trusty | ignored | end of standard support |
Показывать по
Ссылки на источники
EPSS
4.3 Medium
CVSS2
5.5 Medium
CVSS3
Связанные уязвимости
Missing input validation in the ar/tar implementations of APT before version 2.1.2 could result in denial of service when processing specially crafted deb files.
Missing input validation in the ar/tar implementations of APT before v ...
Missing input validation in the ar/tar implementations of APT before version 2.1.2 could result in denial of service when processing specially crafted deb files.
Уязвимость компонента ar/tar программы для установки, обновления и удаления программных пакетов apt, связанная с недостатком механизма проверки вводимых данных, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
4.3 Medium
CVSS2
5.5 Medium
CVSS3