Oval Definition:oval:com.ubuntu.artful:def:201717847000
Revision Date:2017-12-27Version:1
Title:CVE-2017-17847 on Ubuntu 17.10 (artful) - high.
Description:An issue was discovered in Enigmail before 1.9.9. Signature spoofing is possible because the UI does not properly distinguish between an attachment signature, and a signature that applies to the entire containing message, aka TBE-01-021. This is demonstrated by an e-mail message with an attachment that is a signed e-mail message in message/rfc822 format.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-17847
Platform(s):Ubuntu 17.10
Product(s):
Definition Synopsis
  • Ubuntu 17.10 (artful) is installed.
  • AND The 'enigmail' package in artful was vulnerable but has been fixed (note: '2:1.9.9-0ubuntu0.17.10.1').
  • BACK