Man-in-the-Middle Vulnerability in APT Package Management Tool by Debian
CVE-2011-1829

Currently unrated

Key Information:

Vendor

Debian

Vendor
CVE Published:
27 July 2011

What is CVE-2011-1829?

The vulnerability in APT versions prior to 0.8.15.2 is due to improper validation of inline GPG signatures, enabling man-in-the-middle attackers to install modified packages. This occurs through scenarios that involve the absence of an initial clearsigned message, potentially compromising the integrity of the packages and the overall system security.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.