Ubuntu Security Notice (C) 2013-2014 Canonical, Inc. / NASL script (C) 2013-2014 Tenable Network Security, Inc.
The remote Ubuntu host is missing a security-related patch.
Ansgar Burchardt discovered that APT incorrectly handled InRelease
files. If a remote attacker were able to perform a man-in-the-middle
attack, this flaw could potentially be used to install altered
This update corrects the issue by disabling InRelease file support
completely. Please note that this update breaks third-party
repositories that provide only a InRelease file and no separate
Release and Release.gpg files. The default Ubuntu repositories do not
use InRelease files.
Update the affected apt package.
Risk factor :
Medium / CVSS Base Score : 4.3
CVSS Temporal Score : 3.2
Public Exploit Available : false
Family: Ubuntu Local Security Checks
Nessus Plugin ID: 65571 ()
Bugtraq ID: 58700
CVE ID: CVE-2013-1051
The cookie settings on this website are set to 'allow all cookies' to give you the very best website experience. If you continue without changing these settings, you consent to this - but if you want, you can opt out of all cookies by clicking below.