Christoph Anton Mitterer
2021-06-27 21:30:01 UTC
Reply
PermalinkVersion: 2.2.4
Severity: wishlist
Hey.
It would be nice if the sources.list(5) manpage could clarify whether
file URI schema is secure (or not) when the archive is not under local
control by a trusted user.
copy
The copy scheme is identical to the file scheme except that packages
are copied into the cache directory instead of used directly at their
location. This is useful for people using removable media to copy
files around with APT.
So my understanding is that with file:The copy scheme is identical to the file scheme except that packages
are copied into the cache directory instead of used directly at their
location. This is useful for people using removable media to copy
files around with APT.
- at some point the file is verified (apt-secure)
- then read from the specified location directly (not from a cached copy)
... and installed
But wouldn't that also mean, that if the (local) user controlling that
location ... or e.g. the NFS owner, could replace the valid file with a
rogue version, right after it has been read the first time (for validation)?
Or is there another validation of the hashes, right when it's read in for
the actual installation?
Cheers,
Chris.