Advanced Package Tool(APT)是一套基于Debian系统及其派生发行版的强大的包管理工具。该工具可自动下载、配置、安装二进制或源代码格式的软件包。 APT 1.6.4之前的1.6.x版本和1.7.0~alpha3之前的1.7.x版本中存在安全漏洞,该漏洞源于对InRelease文件,‘mirror://’方法实现没有正确的处理gpg签名的验证。攻击者可利用该漏洞实施中间人攻击,绕过库签名防护机制。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | APT 1.6.x before 1.6.4 and 1.7.x before 1.7.0~alpha3 | APT 1.6.x before 1.6.4 and 1.7.x before 1.7.0~alpha3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2018-15598 | Containous Traefik 安全漏洞 | |
| CVE-2018-15599 | Dropbear 安全漏洞 | |
| CVE-2018-15601 | Elefant CMS 安全漏洞 | |
| CVE-2018-15603 | Victor CMS 跨站脚本漏洞 | |
| CVE-2018-15607 | ImageMagick 安全漏洞 | |
| CVE-2018-15481 | UCOPIA Wireless Appliance 安全漏洞 | |
| CVE-2018-15528 | Java System Solutions SSO plugin for BMC MyIT 跨站脚本漏洞 | |
| CVE-2018-15533 | Geutebrueck re_porter 跨站脚本漏洞 | |
| CVE-2018-15534 | Geutebrueck re_porter 安全漏洞 | |
| CVE-2018-15660 | ANI Ola Money application for Android 安全漏洞 | |
| CVE-2018-15661 | ANI Ola Money application for Android 安全漏洞 | |
| CVE-2018-15667 | Bloop Airmail for macOS 授权问题漏洞 | |
| CVE-2018-15668 | Bloop Airmail for macOS 安全漏洞 | |
| CVE-2018-15669 | Bloop Airmail for macOS 安全漏洞 | |
| CVE-2018-15670 | Bloop Airmail for macOS 输入验证错误漏洞 | |
| CVE-2018-15671 | HDF5 安全漏洞 |
No comments yet