Apt Security Restriction Bypass Vulnerability (CVE-2014-0488)
Release date:
Updated on:
Affected Systems:
Ubuntu apt
Description:
Bugtraq id: 69838
CVE (CAN) ID: CVE-2014-0488
The apt package is the advanced frontend of dpkg.
When APT has never been verified to the verified status, the library data is not disabled. This may cause the installation of malicious software packages on the affected computer.
<* Source: vendor
*>
Suggestion:
Vendor patch:
Ubuntu
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://launchpad.net/ubuntu/+source/apt
Http://www.ubuntu.com/usn/usn-2348-1/
Https://launchpad.net/ubuntu/+source/apt/1.0.1ubuntu2.3
Https://launchpad.net/ubuntu/+source/apt/0.8.16 ~ Exp12ubuntu10.19
Https://launchpad.net/ubuntu/+source/apt/0.7.25.3ubuntu9.16
Https://wiki.ubuntu.com/Security/Upgrades
This article permanently updates the link address: