apt: incorrect signature checking
| Package(s): | apt | CVE #(s): | CVE-2009-1358 | ||||
| Created: | April 27, 2009 | Updated: | April 29, 2009 | ||||
| Description: | From the Debian advisory: CVE-2009-1358: A repository that has been signed with an expired or revoked OpenPGP key would still be considered valid by APT. | ||||||
| Alerts: |
| ||||||
