4.3
CVSSv2

CVE-2012-0944

Published: 04/06/2012 Updated: 29/08/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Aptdaemon 0.43 and previous versions in Ubuntu 11.04, 11.10, and 12.04 LTS does not authenticate packages when the transaction is not simulated, which allows remote malicious users to install arbitrary packages via a man-in-the-middle attack.

Vulnerable Product Search on Vulmon Subscribe to Product

sebastian heinlein aptdaemon 0.34

sebastian heinlein aptdaemon 0.33

canonical ubuntu linux 12.04

sebastian heinlein aptdaemon 0.32

sebastian heinlein aptdaemon 0.31

sebastian heinlein aptdaemon 0.41

sebastian heinlein aptdaemon 0.40

canonical ubuntu linux 11.04

canonical ubuntu linux 11.10

sebastian heinlein aptdaemon

sebastian heinlein aptdaemon 0.30

sebastian heinlein aptdaemon 0.20

Vendor Advisories

An attacker could trick Aptdaemon into installing altered packages ...