Oval Definition:oval:com.ubuntu.bionic:def:201610537000
Revision Date:2018-05-31Version:1
Title:CVE-2016-10537 on Ubuntu 18.04 LTS (bionic) - medium.
Description:backbone is a module that adds in structure to a JavaScript heavy application through key-value pairs and custom events connecting to your RESTful API through JSON There exists a potential Cross Site Scripting vulnerability in the `Model#Escape` function of backbone 0.3.3 and earlier, if a user is able to supply input. This is due to the regex that's replacing things to miss the conversion of things such as `<` to `<`.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-10537
Platform(s):Ubuntu 18.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 18.04 LTS (bionic) is installed.
  • AND NOT While related to the CVE in some way, the 'backbone' package in bionic is not affected (note: '0.5.0-1').
  • BACK