Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2019-3462

Description

Incorrect sanitation of the 302 redirect field in HTTP transport method of apt versions 1.4.8 and earlier can lead to content injection by a MITM attacker, potentially leading to remote code execution on the target machine.

POC

Reference

No PoCs from references.

Github

- https://github.com/0xT11/CVE-POC

- https://github.com/ARPSyndicate/cvemon

- https://github.com/AlexRogalskiy/securecloud-image-analysis-action

- https://github.com/Azure/container-scan

- https://github.com/KorayAgaya/TrivyWeb

- https://github.com/Mohzeela/external-secret

- https://github.com/Tufin/securecloud-image-analysis-action

- https://github.com/actions-marketplace-validations/Azure_container-scan

- https://github.com/actions-marketplace-validations/Tufin_securecloud-image-analysis-action

- https://github.com/actions-marketplace-validations/ajinkya599_container-scan

- https://github.com/actions-marketplace-validations/cynalytica_container-scan

- https://github.com/atilacastro/update-apt-package

- https://github.com/cynalytica/container-scan

- https://github.com/drjhunter/container-scan

- https://github.com/emeloibmco/IBM-Cloud-Vulnerability-Advisor

- https://github.com/hectorgie/PoC-in-GitHub

- https://github.com/illikainen/digestlookup

- https://github.com/jaweesh/Packet-Injection-in-Sudan-Analysis

- https://github.com/nomi-sec/PoC-in-GitHub

- https://github.com/pritish-004/APT-GET-Vulnerability-exploit

- https://github.com/siddharthraopotukuchi/trivy

- https://github.com/simiyo/trivy

- https://github.com/t31m0/Vulnerability-Scanner-for-Containers

- https://github.com/tonejito/check_CVE-2019-3462

- https://github.com/umahari/security