Medium severity5.5NVD Advisory· Published May 15, 2020· Updated Jun 17, 2026
CVE-2020-3810
CVE-2020-3810
Description
Missing input validation in the ar/tar implementations of APT before version 2.1.2 could result in denial of service when processing specially crafted deb files.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
12cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:-:*:*:*+ 5 more
- cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:-:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:19.10:*:*:*:*:*:*:*
- cpe:2.3:o:canonical:ubuntu_linux:20.04:*:*:*:lts:*:*:*
- cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
8- salsa.debian.org/apt-team/apt/-/commit/dceb1e49e4b8e4dadaf056be34088b415939cda6nvdPatchVendor Advisory
- github.com/Debian/apt/issues/111nvdExploitThird Party Advisory
- bugs.launchpad.net/bugs/1878177nvdIssue TrackingThird Party Advisory
- lists.debian.org/debian-security-announce/2020/msg00089.htmlnvdMailing ListVendor Advisory
- tracker.debian.org/news/1144109/accepted-apt-212-source-into-unstable/nvdRelease NotesVendor Advisory
- usn.ubuntu.com/4359-1/nvdThird Party Advisory
- usn.ubuntu.com/4359-2/nvdThird Party Advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/U4PEH357MZM2SUGKETMEHMSGQS652QHH/nvd
News mentions
0No linked articles in our index yet.