CVE-2012-3587
published 2012-06-19CVE-2012-3587: APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-update to import keyrings, relies on GnuPG argument order and does not check GPG…
PriorityP411low2.6CVSS 2.0
AVNACHAuNCNIPAN
EPSS
1.70%
74.7th percentile
APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-update to import keyrings, relies on GnuPG argument order and does not check GPG subkeys, which might allow remote attackers to install Trojan horse packages via a man-in-the-middle (MITM) attack.
Affected
54 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
| debian | advanced_package_tool | — | — |
CVSS provenance
nvdv2.02.6LOWAV:N/AC:H/Au:N/C:N/I:P/A:N
osv2.6LOW
vendor_redhat6.5MEDIUM
vendor_debian2.6LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-86m4-88r3-mw4c: APT 0
ghsa_unreviewed·2022-05-13·CVSS 2.6
CVE-2012-0954 [LOW] CWE-20 GHSA-86m4-88r3-mw4c: APT 0
APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-update to import keyrings, relies on GnuPG argument order and does not check GPG subkeys, which might allow remote attackers to install altered packages via a man-in-the-middle (MITM) attack. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-3587.
GHSA
GHSA-2c4h-r267-mgv3: APT 0
ghsa_unreviewed·2022-05-13
CVE-2012-3587 [LOW] CWE-20 GHSA-2c4h-r267-mgv3: APT 0
APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-update to import keyrings, relies on GnuPG argument order and does not check GPG subkeys, which might allow remote attackers to install Trojan horse packages via a man-in-the-middle (MITM) attack.
OSV
CVE-2012-3587: APT 0
osv·2012-06-19·CVSS 2.6
CVE-2012-3587 [LOW] CVE-2012-3587: APT 0
APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-update to import keyrings, relies on GnuPG argument order and does not check GPG subkeys, which might allow remote attackers to install Trojan horse packages via a man-in-the-middle (MITM) attack.
OSV
CVE-2012-0954: APT 0
osv·2012-06-19·CVSS 2.6
CVE-2012-0954 [LOW] CVE-2012-0954: APT 0
APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-update to import keyrings, relies on GnuPG argument order and does not check GPG subkeys, which might allow remote attackers to install altered packages via a man-in-the-middle (MITM) attack. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-3587.
Red Hat
file: incomplete fix for CVE-2012-1571 in cdf_read_property_info
vendor_redhat·2014-08-21·CVSS 6.5
CVE-2014-3587 [MEDIUM] CWE-190 file: incomplete fix for CVE-2012-1571 in cdf_read_property_info
file: incomplete fix for CVE-2012-1571 in cdf_read_property_info
Integer overflow in the cdf_read_property_info function in cdf.c in file through 5.19, as used in the Fileinfo component in PHP before 5.4.32 and 5.5.x before 5.5.16, allows remote attackers to cause a denial of service (application crash) via a crafted CDF file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-1571.
It was found that the fix for CVE-2012-1571 was incomplete; the File Information (fileinfo) extension did not correctly parse certain Composite Document Format (CDF) files. A remote attacker could use this flaw to crash a PHP application using fileinfo via a specially crafted CDF file.
Statement: This issue did not affect the php and the file packages as shipped with Red Hat Enterprise
Red Hat
BREACH attack against HTTP compression
vendor_redhat·2013-08-02·CVSS 2.6
CVE-2013-3587 [LOW] BREACH attack against HTTP compression
BREACH attack against HTTP compression
The HTTPS protocol, as used in unspecified web applications, can encrypt compressed data without properly obfuscating the length of the unencrypted data, which makes it easier for man-in-the-middle attackers to obtain plaintext secret values by observing length differences during a series of guesses in which a string in an HTTP request URL potentially matches an unknown string in an HTTP response body, aka a "BREACH" attack, a different issue than CVE-2012-4929.
Statement: This issue is not planned to be addressed in the version of httpd as shipped with Red Hat Enterprise Linux 5 and 6. More details and possible mitigations are mentioned in https://bugzilla.redhat.com/show_bug.cgi?id=995168#c5
Package: httpd (Red Hat Enterprise Linux 5) - Will not
Debian
CVE-2012-0954: apt - APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-upda...
vendor_debian·2012·CVSS 2.6
CVE-2012-0954 [LOW] CVE-2012-0954: apt - APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-upda...
APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-update to import keyrings, relies on GnuPG argument order and does not check GPG subkeys, which might allow remote attackers to install altered packages via a man-in-the-middle (MITM) attack. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-3587.
Scope: local
bookworm: resolved (fixed in 0.7.25)
bullseye: resolved (fixed in 0.7.25)
forky: resolved (fixed in 0.7.25)
sid: resolved (fixed in 0.7.25)
trixie: resolved (fixed in 0.7.25)
Debian
CVE-2012-3587: apt - APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-upda...
vendor_debian·2012·CVSS 2.6
CVE-2012-3587 [LOW] CVE-2012-3587: apt - APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-upda...
APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-update to import keyrings, relies on GnuPG argument order and does not check GPG subkeys, which might allow remote attackers to install Trojan horse packages via a man-in-the-middle (MITM) attack.
Scope: local
bookworm: resolved (fixed in 0.7.25)
bullseye: resolved (fixed in 0.7.25)
forky: resolved (fixed in 0.7.25)
sid: resolved (fixed in 0.7.25)
trixie: resolved (fixed in 0.7.25)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://seclists.org/fulldisclosure/2012/Jun/267http://www.ubuntu.com/usn/USN-1475-1http://www.ubuntu.com/usn/USN-1477-1https://bugs.launchpad.net/ubuntu/+source/apt/+bug/1013128http://seclists.org/fulldisclosure/2012/Jun/267http://www.ubuntu.com/usn/USN-1475-1http://www.ubuntu.com/usn/USN-1477-1https://bugs.launchpad.net/ubuntu/+source/apt/+bug/1013128
2012-06-19
Published