Oval Definition:oval:com.ubuntu.artful:def:201610727000
Revision Date:2018-07-20Version:1
Title:CVE-2016-10727 on Ubuntu 17.10 (artful) - medium.
Description:camel/providers/imapx/camel-imapx-server.c in the IMAPx component in GNOME evolution-data-server before 3.21.2 proceeds with cleartext data containing a password if the client wishes to use STARTTLS but the server will not use STARTTLS, which makes it easier for remote attackers to obtain sensitive information by sniffing the network. The server code was intended to report an error and not proceed, but the code was written incorrectly.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-10727
Platform(s):Ubuntu 17.10
Product(s):
Definition Synopsis
  • Ubuntu 17.10 (artful) is installed.
  • AND The vulnerability of the 'evolution-data-server' package in artful is not known (status: 'needs-triage'). It is pending evaluation.
  • BACK