==========================================================================
Ubuntu Security Notice USN-4667-2
January 11, 2021
apt vulnerability
==========================================================================
A security issue affects these releases of Ubuntu and its derivatives:
– Ubuntu 14.04 ESM
Summary:
APT could be made to crash or stop responding if it opened a specially
crafted file.
Software Description:
– apt: Advanced front-end for dpkg
Details:
USN-4667-1 fixed a vulnerability in APT. This update provides
the corresponding update for Ubuntu 14.04 ESM.
Original advisory details:
Kevin Backhouse discovered that APT incorrectly handled certain packages.
A local attacker could possibly use this issue to cause APT to crash or
stop responding, resulting in a denial of service.
Update instructions:
The problem can be corrected by updating your system to the following
package versions:
Ubuntu 14.04 ESM:
apt 1.0.1ubuntu2.24+esm3
In general, a standard system update will make all the necessary changes.
References:
https://usn.ubuntu.com/4667-2
https://usn.ubuntu.com/4667-1
CVE-2020-27350
—–BEGIN PGP SIGNATURE—–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=TyQ/
—–END PGP SIGNATURE—–
—