« Volver al listado

CVE-2011-3634

Estado: ModificadaBaja (2.6)—

methods/https.cc in apt before 0.8.11 accepts connections when the certificate host name fails validation and Verify-Host is enabled, which allows man-in-the-middle attackers to obtain repository credentials via unspecified vectors.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (2)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2011-3634",
  "cveTags": [],
  "metrics": {
    "cvssMetricV2": [
      {
        "type": "Primary",
        "source": "nvd@nist.gov",
        "cvssData": {
          "version": "2.0",
          "baseScore": 2.6,
          "accessVector": "NETWORK",
          "vectorString": "AV:N/AC:H/Au:N/C:P/I:N/A:N",
          "authentication": "NONE",
          "integrityImpact": "NONE",
          "accessComplexity": "HIGH",
          "availabilityImpact": "NONE",
          "confidentialityImpact": "PARTIAL"
        },
        "acInsufInfo": false,
        "impactScore": 2.9,
        "baseSeverity": "LOW",
        "obtainAllPrivilege": false,
        "exploitabilityScore": 4.9,
        "obtainUserPrivilege": false,
        "obtainOtherPrivilege": false,
        "userInteractionRequired": false
      }
    ]
  },
  "affected": [
    {
      "source": "secalert@redhat.com",
      "affectedData": [
        {
          "vendor": "n/a",
          "product": "n/a",
          "versions": [
            {
              "status": "affected",
              "version": "n/a"
            }
          ]
        }
      ]
    }
  ],
  "published": "2014-03-01T00:55:04.857",
  "references": [
    {
      "url": "http://people.canonical.com/~ubuntu-security/cve/2011/CVE-2011-3634.html",
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://www.ubuntu.com/usn/USN-1283-1",
      "source": "secalert@redhat.com"
    },
    {
      "url": "https://alioth.debian.org/plugins/scmgit/cgi-bin/gitweb.cgi?p=apt/apt.git%3Ba=blob%3Bf=debian/changelog%3Bhb=HEAD",
      "source": "secalert@redhat.com"
    },
    {
      "url": "https://bugs.launchpad.net/ubuntu/+source/apt/+bug/868353",
      "source": "secalert@redhat.com"
    },
    {
      "url": "http://people.canonical.com/~ubuntu-security/cve/2011/CVE-2011-3634.html",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "http://www.ubuntu.com/usn/USN-1283-1",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://alioth.debian.org/plugins/scmgit/cgi-bin/gitweb.cgi?p=apt/apt.git%3Ba=blob%3Bf=debian/changelog%3Bhb=HEAD",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    },
    {
      "url": "https://bugs.launchpad.net/ubuntu/+source/apt/+bug/868353",
      "source": "af854a3a-2127-422b-91ae-364da2661108"
    }
  ],
  "vulnStatus": "Modified",
  "weaknesses": [
    {
      "type": "Primary",
      "source": "nvd@nist.gov",
      "description": [
        {
          "lang": "en",
          "value": "CWE-200"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "methods/https.cc in apt before 0.8.11 accepts connections when the certificate host name fails validation and Verify-Host is enabled, which allows man-in-the-middle attackers to obtain repository credentials via unspecified vectors."
    },
    {
      "lang": "es",
      "value": "methods/https.cc en apt anterior a 0.8.11 acepta conexiones cuando el nombre de host del certificado falla la validación y Verify-Host está habilitado, lo que permite a atacantes man-in-the-middle obtener credenciales de repositorios a través de vectores no especificados."
    }
  ],
  "lastModified": "2026-06-16T23:33:39.827",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:a:debian:advanced_package_tool:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "A17E71A5-50D2-49AD-BAB0-9C5AEB7A6CCE",
              "versionEndIncluding": "0.8.10.3"
            },
            {
              "criteria": "cpe:2.3:a:debian:advanced_package_tool:0.8.0:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "58F0D8BF-F9D3-40D0-AD71-9978F2A1FD29"
            },
            {
              "criteria": "cpe:2.3:a:debian:advanced_package_tool:0.8.0:pre1:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "E82F9BF7-D4DD-4CF5-BE57-4772B7DDD5D8"
            },
            {
              "criteria": "cpe:2.3:a:debian:advanced_package_tool:0.8.0:pre2:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7F4BC141-EEEB-4D0B-A3D4-24929855B685"
            },
            {
              "criteria": "cpe:2.3:a:debian:advanced_package_tool:0.8.1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "6CA54D7A-9296-4530-8215-6EB708DDE2B7"
            },
            {
              "criteria": "cpe:2.3:a:debian:advanced_package_tool:0.8.10:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "04F345BE-745C-418D-BF0F-B7A5F1E3A5B7"
            },
            {
              "criteria": "cpe:2.3:a:debian:advanced_package_tool:0.8.10.1:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "46799DD7-E46E-4EB2-AF13-852407384A5C"
            },
            {
              "criteria": "cpe:2.3:a:debian:advanced_package_tool:0.8.10.2:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "C417AF8F-D12C-4759-B99D-C60E139B9946"
            },
            {
              "criteria": "cpe:2.3:o:canonical:ubuntu_linux:8.04:-:lts:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "D6DFE2D3-46E2-4D0C-8508-30307D654560"
            },
            {
              "criteria": "cpe:2.3:o:canonical:ubuntu_linux:10.04:-:lts:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "7118F616-25CA-4E34-AA13-4D14BB62419F"
            },
            {
              "criteria": "cpe:2.3:o:canonical:ubuntu_linux:10.10:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "87614B58-24AB-49FB-9C84-E8DDBA16353B"
            },
            {
              "criteria": "cpe:2.3:o:canonical:ubuntu_linux:11.04:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "EF49D26F-142E-468B-87C1-BABEA445255C"
            }
          ],
          "operator": "OR"
        }
      ]
    }
  ],
  "sourceIdentifier": "secalert@redhat.com"
}