Oval Definition:oval:com.ubuntu.artful:def:20132099000
Revision Date:2013-10-09Version:1
Title:CVE-2013-2099 on Ubuntu 17.10 (artful) - low.
Description:Algorithmic complexity vulnerability in the ssl.match_hostname function in Python 3.2.x, 3.3.x, and earlier, and unspecified versions of python-backports-ssl_match_hostname as used for older Python versions, allows remote attackers to cause a denial of service (CPU consumption) via multiple wildcard characters in the common name in a certificate.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2013-2099
Platform(s):Ubuntu 17.10
Product(s):
Definition Synopsis
  • Ubuntu 17.10 (artful) is installed.
  • AND Package Information
  • NOT While related to the CVE in some way, the 'bzr' package in artful is not affected (note: '2.6.0~bzr6574-1ubuntu1').
  • OR NOT While related to the CVE in some way, the 'linkchecker' package in artful is not affected (note: '8.6-2').
  • OR NOT While related to the CVE in some way, the 'python-tornado' package in artful is not affected (note: '3.2.0-1ubuntu1').
  • OR NOT While related to the CVE in some way, the 'python-urllib3' package in artful is not affected (note: '1.6-2').
  • OR NOT While related to the CVE in some way, the 'python2.7' package in artful is not affected (note: '2.7.5-5ubuntu1').
  • OR NOT While related to the CVE in some way, the 'zeroinstall-injector' package in artful is not affected (note: '2.3.3-1').
  • BACK