TE
TechEcho
Home
24h Top
Newest
Best
Ask
Show
Jobs
English
GitHub
Twitter
Home
HTTP redirect vulnerability in apt package manager
10 points
by
dansimau
over 6 years ago
3 comments
mondoshawan
over 6 years ago
Ironic, given the previous discussion on why apt shouldn't use HTTPS connections. With full end-to-end SSL validation, this kind of vulnerability can't exist. Should be interesting to see how the community reacta to this.
est31
over 6 years ago
Collapse
Weren't PGP signatures supposed to ensure integrity? How is this being bypassed?
评论 #18968324 未加载
jwilk
over 6 years ago
Please use the original title.