NULL pointer dereference in TagSection.keys() in python-apt on APT-based Linux systems allows a local attacker to cause a denial of service (process crash) via a crafted deb822 file with a malformed non-UTF-8 key.
The product dereferences a pointer that it expects to be valid but is NULL.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Python-apt | Ubuntu | devel | * |
| Python-apt | Ubuntu | esm-infra-legacy/trusty | * |
| Python-apt | Ubuntu | esm-infra/bionic | * |
| Python-apt | Ubuntu | esm-infra/focal | * |
| Python-apt | Ubuntu | esm-infra/xenial | * |
| Python-apt | Ubuntu | focal | * |
| Python-apt | Ubuntu | jammy | * |
| Python-apt | Ubuntu | noble | * |
| Python-apt | Ubuntu | plucky | * |
| Python-apt | Ubuntu | questing | * |
| Python-apt | Ubuntu | upstream | * |