summaryrefslogtreecommitdiff
path: root/apt-pkg/deb/dpkgpm.cc
diff options
context:
space:
mode:
authorDavid Kalnischkies <kalnischkies@gmail.com>2011-06-06 21:29:16 +0200
committerDavid Kalnischkies <kalnischkies@gmail.com>2011-06-06 21:29:16 +0200
commit2e3c9d6452e69dcb5c83732fbda27b747bc997f4 (patch)
treebc5e845c507f605f956964e45519ed4e73d7d341 /apt-pkg/deb/dpkgpm.cc
parent89a1aa5dd55a3469c92720c7fcb90779f90b61f0 (diff)
* apt-pkg/indexcopy.cc:
- Verify that the first line of an InRelease file is a PGP header for a signed message. Otherwise a man-in-the-middle can prefix a valid InRelease file with his own data! (CVE-2011-1829)
Diffstat (limited to 'apt-pkg/deb/dpkgpm.cc')
0 files changed, 0 insertions, 0 deletions