6.8 Medium
CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
AV:N/AC:M/Au:N/C:P/I:P/A:P
0.005 Low
EPSS
Percentile
76.4%
Buffer overflow in the HTTP transport code in apt-get in APT 1.0.1 and
earlier allows man-in-the-middle attackers to cause a denial of service
(crash) or possibly execute arbitrary code via a crafted URL.
Author | Note |
---|---|
mdeslaur | should only be a denial of service because of hardening |