NULL pointer dereference in TagSection.keys() in python-apt on APT-based Linux systems allows a local attacker to cause a denial of service (process crash) via a crafted deb822 file with a malformed non-UTF-8 key.
2025-12-05T13:16:05.220
2026-01-07T22:20:56.370
Analyzed
CVSSv3.1: 5.5 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | ubuntu | python-apt | < 0.9.3.11 | Yes |
| Application | ubuntu | python-apt | < 1.6.6 | Yes |
| Application | ubuntu | python-apt | < 2.0.1 | Yes |
| Application | ubuntu | python-apt | < 2.7.7 | Yes |
| Application | ubuntu | python-apt | 0.9.3.5 | Yes |
| Application | ubuntu | python-apt | 0.9.3.5 | Yes |
| Application | ubuntu | python-apt | 0.9.3.11 | Yes |
| Application | ubuntu | python-apt | 0.9.3.11 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.1.0 | Yes |
| Application | ubuntu | python-apt | 1.6.6 | Yes |
| Application | ubuntu | python-apt | 2.0.1 | Yes |
| Application | ubuntu | python-apt | 2.4.0 | Yes |
| Application | ubuntu | python-apt | 2.4.0 | Yes |
| Application | ubuntu | python-apt | 2.4.0 | Yes |
| Application | ubuntu | python-apt | 2.4.0 | Yes |
| Application | ubuntu | python-apt | 2.4.0 | Yes |
| Application | ubuntu | python-apt | 2.4.0 | Yes |
| Application | ubuntu | python-apt | 2.7.7 | Yes |
| Application | ubuntu | python-apt | 2.7.7 | Yes |
| Application | ubuntu | python-apt | 2.7.7 | Yes |
| Application | ubuntu | python-apt | 2.7.7 | Yes |
| Application | ubuntu | python-apt | 2.7.7 | Yes |
| Application | ubuntu | python-apt | 2.7.7 | Yes |
| Application | ubuntu | python-apt | 2.7.7 | Yes |
| Application | ubuntu | python-apt | 3.0.0 | Yes |
| Application | ubuntu | python-apt | 3.0.0 | Yes |
| Operating System | canonical | ubuntu_linux | - | No |
| Operating System | debian | debian_linux | 11.0 | Yes |