Aptdaemon is a package-management daemon for Debian and Ubuntu systems that provides privileged software installation and update operations to unprivileged user sessions. The observed vulnerability exposure centers on path-traversal weaknesses in its file-handling logic, a structural risk inherent to a privileged component that mediates filesystem access. Live severity, exploitation status, and current CVE counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Aptdaemon Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
There is no input validation on the Locale property in an apt transaction. An unprivileged user can supply a full path to a writable directory, which lets aptd read a file as root. | Oct 31, 2020 | 3.3 | 17 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Aptdaemon Project.
Media articles that mention a CVE ID that affects a product developed by Aptdaemon Project — matched by CVE ID, not by vendor name.