Navigation
Recherche
|
Justicz: Remote Code Execution in apt/apt-get
mercredi 23 janvier 2019, 19:15 , par LWN.net
Max Justicz describes a
vulnerability in apt-get and how to prevent it. 'I found a vulnerability in apt that allows a network man-in-the-middle (or a malicious package mirror) to execute arbitrary code as root on a machine installing any package. The bug has been fixed in the latest versions of apt. If you’re worried about being exploited during the update process, you can protect yourself by disabling HTTP redirects while you update.'
https://lwn.net/Articles/777394/rss
|
56 sources (32 en français)
Date Actuelle
ven. 22 nov. - 11:35 CET
|