4.3
CVSSv2

CVE-2012-0962

Published: 26/12/2012 Updated: 27/12/2012
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Aptdaemon 0.43 in Ubuntu 11.10 and 12.04 LTS uses short IDs when importing PPA GPG keys from a keyserver, which allows remote malicious users to install arbitrary package repository GPG keys via a man-in-the-middle (MITM) attack.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sebastian heinlein aptdaemon 0.43

canonical ubuntu linux 12.04

canonical ubuntu linux 11.10

Vendor Advisories

Aptdaemon could be tricked into installing arbitrary PPA GPG keys ...