[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247621

 
 

909

 
 

194512

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-3025-1 apt -- apt

ID: oval:org.secpod.oval:def:601776Date: (C)2014-09-17   (M)2022-10-10
Class: PATCHFamily: unix




It was discovered that APT, the high level package manager, does not properly invalidate unauthenticated data , performs incorrect verification of 304 replies , does not perform the checksum check when the Acquire::GzipIndexes option is used and does not properly perform validation for binary packages downloaded by the apt-get download command .

Platform:
Debian 7.0
Product:
apt
Reference:
DSA-3025-1
CVE-2014-0487
CVE-2014-0488
CVE-2014-0489
CVE-2014-0490
CVE    4
CVE-2014-0487
CVE-2014-0490
CVE-2014-0488
CVE-2014-0489
...
CPE    2
cpe:/o:debian:debian_linux:7.x
cpe:/a:apt:apt

© SecPod Technologies