CVE-2014-0489

EPSS 0.69%
Published: 11/3/2014Modified: 4/28/2026
Also known as:DEBIAN-CVE-2014-0489

Description

APT before 1.0.9, when the Acquire::GzipIndexes option is enabled, does not validate checksums, which allows remote attackers to execute arbitrary code via a crafted package.

Affected packages (1)

References (1)