NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
67916 | CVE-2005-2214 | apt-setup in Debian GNU/Linux installs the apt.conf file with insecure permissions, which allows local users to obtain sensitive information such as passwords. | 2 | 4.6 | Medium | 2017-01-03 | 2008-09-05 | View | |
48644 | CVE-2009-1358 | apt-get in apt before 0.7.21 does not check for the correct error code from gpgv, which causes apt to treat a repository as valid even when it has been signed with a key that has been revoked or expired, which might allow remote attackers to trick apt into installing malicious repositories. | 2 | 10 | High | 2017-01-07 | 2009-05-19 | View | |
84844 | CVE-2017-7443 | apt-cacher before 1.7.15 and apt-cacher-ng before 3.4 allow HTTP response splitting via encoded newline characters, related to lack of blocking for the %0[ad] regular expression. | 2 | 4.3 | Medium | 2017-04-27 | 2017-04-12 | View | |
29382 | CVE-2014-0489 | APT before 1.0.9, when the Acquire::GzipIndexes option is enabled, does not validate checksums, which allows remote attackers to execute arbitrary code via a crafted package. | 2 | 7.5 | High | 2017-01-19 | 2014-11-04 | View | |
29380 | CVE-2014-0487 | APT before 1.0.9 does not verify downloaded files if they have been modified as indicated using the If-Modified-Since header, which has unspecified impact and attack vectors. | 2 | 7.5 | High | 2017-01-19 | 2014-11-04 | View |
Page 16307 of 17672, showing 5 records out of 88360 total, starting on record 81531, ending on 81535