NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
67916  CVE-2005-2214  apt-setup in Debian GNU/Linux installs the apt.conf file with insecure permissions, which allows local users to obtain sensitive information such as passwords.    4.6  Medium  2017-01-03  2008-09-05  View
48644  CVE-2009-1358  apt-get in apt before 0.7.21 does not check for the correct error code from gpgv, which causes apt to treat a repository as valid even when it has been signed with a key that has been revoked or expired, which might allow remote attackers to trick apt into installing malicious repositories.    10  High  2017-01-07  2009-05-19  View
84844  CVE-2017-7443  apt-cacher before 1.7.15 and apt-cacher-ng before 3.4 allow HTTP response splitting via encoded newline characters, related to lack of blocking for the %0[ad] regular expression.    4.3  Medium  2017-04-27  2017-04-12  View
29382  CVE-2014-0489  APT before 1.0.9, when the Acquire::GzipIndexes option is enabled, does not validate checksums, which allows remote attackers to execute arbitrary code via a crafted package.    7.5  High  2017-01-19  2014-11-04  View
29380  CVE-2014-0487  APT before 1.0.9 does not verify downloaded files if they have been modified as indicated using the If-Modified-Since header, which has unspecified impact and attack vectors.    7.5  High  2017-01-19  2014-11-04  View

Page 16307 of 17672, showing 5 records out of 88360 total, starting on record 81531, ending on 81535

Actions