![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2019-3462 |
Description: | Incorrect sanitation of the 302 redirect field in HTTP transport method of apt versions 1.4.8 and earlier can lead to content injection by a MITM attacker, potentially leading to remote code execution on the target machine. |
Test IDs: | 1.3.6.1.4.1.25623.1.0.704371 1.3.6.1.4.1.25623.1.1.12.2019.3863.2 1.3.6.1.4.1.25623.1.0.843878 1.3.6.1.4.1.25623.1.0.891637 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2019-3462 BugTraq ID: 106690 http://www.securityfocus.com/bid/106690 Debian Security Information: DSA-4371 (Google Search) https://www.debian.org/security/2019/dsa-4371 https://lists.debian.org/debian-lts-announce/2019/01/msg00013.html https://lists.debian.org/debian-lts-announce/2019/01/msg00014.html https://lists.apache.org/thread.html/8338a0f605bdbb3a6098bb76f666a95fc2b2f53f37fa1ecc89f1146f@%3Cdevnull.infra.apache.org%3E https://usn.ubuntu.com/3863-1/ https://usn.ubuntu.com/3863-2/ |