Buffer overflow in the HTTP transport code in apt-get in APT 1.0.1 and earlier allows man-in-the-middle attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted URL.
https://exchange.xforce.ibmcloud.com/vulnerabilities/96151
http://www.ubuntu.com/usn/USN-2353-1
http://www.securityfocus.com/bid/70075
http://www.debian.org/security/2014/dsa-3031