Files
CVEs-PoC/2020/CVE-2020-15709.md
T
2024-05-25 21:48:12 +02:00

18 lines
815 B
Markdown

### [CVE-2020-15709](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15709)
![](https://img.shields.io/static/v1?label=Product&message=add-apt-repository&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%200.98.9.*%3C%20%200.98.9.2%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-20%20Improper%20Input%20Validation&color=brighgreen)
### Description
Versions of add-apt-repository before 0.98.9.2, 0.96.24.32.14, 0.96.20.10, and 0.92.37.8ubuntu0.1~esm1, printed a PPA (personal package archive) description to the terminal as-is, which allowed PPA owners to provide ANSI terminal escapes to modify terminal contents in unexpected ways.
### POC
#### Reference
No PoCs from references.
#### Github
- https://github.com/404notf0und/CVE-Flow