Vulnerability Database

321,593

Total vulnerabilities in the database

CVE-2019-15796

Python-apt doesn't check if hashes are signed in Version.fetch_binary() and Version.fetch_source() of apt/package.py or in _fetch_archives() of apt/cache.py in version 1.9.3ubuntu2 and earlier. This allows downloads from unsigned repositories which shouldn't be allowed and has been fixed in verisions 1.9.5, 1.9.0ubuntu1.2, 1.6.5ubuntu0.1, 1.1.0~beta1ubuntu0.16.04.7, 0.9.3.5ubuntu3+esm2, and 0.8.3ubuntu7.5.

  • Published: Mar 26, 2020
  • Updated: Nov 9, 2025
  • CVE: CVE-2019-15796
  • Severity: Low
  • Exploit:

CVSS v3:

  • Severity: Low
  • Score: 4.7
  • AV:N/AC:H/PR:N/UI:R/S:C/C:L/I:L/A:N

CVSS v2:

  • Severity: Low
  • Score: 2.6
  • AV:N/AC:H/Au:N/C:N/I:P/A:N
Software From Fixed in
ubuntu / python-apt 0.8.0-ubuntu9 0.8.0-ubuntu9.x
ubuntu / python-apt 0.8.1-ubuntu1 0.8.1-ubuntu1.x
ubuntu / python-apt 0.8.3-ubuntu1 0.8.3-ubuntu1.x
ubuntu / python-apt 0.8.3-ubuntu2 0.8.3-ubuntu2.x
ubuntu / python-apt 0.8.3-ubuntu3 0.8.3-ubuntu3.x
ubuntu / python-apt 0.8.3-ubuntu4 0.8.3-ubuntu4.x
ubuntu / python-apt 0.8.3-ubuntu5 0.8.3-ubuntu5.x
ubuntu / python-apt 0.8.3-ubuntu6 0.8.3-ubuntu6.x
ubuntu / python-apt 0.8.3-ubuntu7 0.8.3-ubuntu7.x
ubuntu / python-apt 0.8.3-ubuntu7.1 0.8.3-ubuntu7.1.x
ubuntu / python-apt 0.8.3-ubuntu7.2 0.8.3-ubuntu7.2.x
ubuntu / python-apt 0.8.3-ubuntu7.3 0.8.3-ubuntu7.3.x
ubuntu / python-apt 0.8.9.1 0.8.9.1.x
ubuntu / python-apt 0.8.9.1-ubuntu1 0.8.9.1-ubuntu1.x
ubuntu / python-apt 0.9.0 0.9.0.x
ubuntu / python-apt 0.9.1 0.9.1.x
ubuntu / python-apt 0.9.1-build1 0.9.1-build1.x
ubuntu / python-apt 0.9.1-build2 0.9.1-build2.x
ubuntu / python-apt 0.9.1-ubuntu1 0.9.1-ubuntu1.x
ubuntu / python-apt 0.9.3.1 0.9.3.1.x
ubuntu / python-apt 0.9.3.2 0.9.3.2.x
ubuntu / python-apt 0.9.3.2-ubuntu1 0.9.3.2-ubuntu1.x
ubuntu / python-apt 0.9.3.2-ubuntu2 0.9.3.2-ubuntu2.x
ubuntu / python-apt 0.9.3.3 0.9.3.3.x
ubuntu / python-apt 0.9.3.3-ubuntu1 0.9.3.3-ubuntu1.x
ubuntu / python-apt 0.9.3.4 0.9.3.4.x
ubuntu / python-apt 0.9.3.4-build1 0.9.3.4-build1.x
ubuntu / python-apt 0.9.3.5 0.9.3.5.x
ubuntu / python-apt 0.9.3.5-ubuntu1 0.9.3.5-ubuntu1.x
ubuntu / python-apt 0.9.3.5-ubuntu2 0.9.3.5-ubuntu2.x
ubuntu / python-apt 0.9.3.5-ubuntu3 0.9.3.5-ubuntu3.x
ubuntu / python-apt 1.0.1-build1 1.0.1-build1.x
ubuntu / python-apt 1.0.1-ubuntu1 1.0.1-ubuntu1.x
ubuntu / python-apt 1.0.1-ubuntu2 1.0.1-ubuntu2.x
ubuntu / python-apt 1.1.0-beta1 1.1.0-beta1.x
ubuntu / python-apt 1.1.0-beta1build1 1.1.0-beta1build1.x
ubuntu / python-apt 1.1.0-beta1ubuntu0.16.04.1 1.1.0-beta1ubuntu0.16.04.1.x
ubuntu / python-apt 1.1.0-beta1ubuntu0.16.04.2 1.1.0-beta1ubuntu0.16.04.2.x
ubuntu / python-apt 1.1.0-beta1ubuntu0.16.04.3 1.1.0-beta1ubuntu0.16.04.3.x
ubuntu / python-apt 1.1.0-beta1ubuntu0.16.04.4 1.1.0-beta1ubuntu0.16.04.4.x
ubuntu / python-apt 1.1.0-beta1ubuntu0.16.04.5 1.1.0-beta1ubuntu0.16.04.5.x
debian / python-apt 1.8.4 1.8.4.x
ubuntu / python-apt 1.4.0 1.4.0.x
ubuntu / python-apt 1.4.0-beta3build2 1.4.0-beta3build2.x
ubuntu / python-apt 1.4.0-beta3ubuntu1 1.4.0-beta3ubuntu1.x
ubuntu / python-apt 1.6.0 1.6.0.x
ubuntu / python-apt 1.6.0-rc1 1.6.0-rc1.x
ubuntu / python-apt 1.6.0-rc2ubuntu1 1.6.0-rc2ubuntu1.x
ubuntu / python-apt 1.6.0-rc2ubuntu2 1.6.0-rc2ubuntu2.x
ubuntu / python-apt 1.6.0-rc3 1.6.0-rc3.x
ubuntu / python-apt 1.6.1 1.6.1.x
ubuntu / python-apt 1.6.2 1.6.2.x
ubuntu / python-apt 1.6.3 1.6.3.x
ubuntu / python-apt 1.6.3-ubuntu1 1.6.3-ubuntu1.x
ubuntu / python-apt 1.6.4 1.6.4.x
ubuntu / python-apt 1.8.4 1.8.4.x
ubuntu / python-apt 1.9.0-alpha0~ubuntu1 1.9.0-alpha0~ubuntu1.x
ubuntu / python-apt 1.9.0-alpha0~ubuntu2 1.9.0-alpha0~ubuntu2.x
ubuntu / python-apt 1.9.0-ubuntu1 1.9.0-ubuntu1.x
ubuntu / python-apt 1.7.0 1.7.0.x
ubuntu / python-apt 1.8.0 1.8.0.x
ubuntu / python-apt 1.8.0-alpha0~ubuntu1 1.8.0-alpha0~ubuntu1.x
ubuntu / python-apt 1.8.0-alpha0~ubuntu2 1.8.0-alpha0~ubuntu2.x
ubuntu / python-apt 1.8.1 1.8.1.x
ubuntu / python-apt 1.8.2 1.8.2.x
ubuntu / python-apt 1.8.3 1.8.3.x