CVE-2014-0487
EPSS 0.12%apt - security update
Published: 11/3/2014Modified: 4/28/2026
Description
APT before 1.0.9 does not verify downloaded files if they have been modified as indicated using the If-Modified-Since header, which has unspecified impact and attack vectors.
Affected packages (3)
- Debian/aptfrom 0, < 1.0.9
- Debian/aptfrom 0, < 0.8.10.3+squeeze3
- Debian/aptfrom 0, < 0.9.7.9+deb7u3