Oval Definition:oval:com.ubuntu.bionic:def:201804890000000
Revision Date:2018-02-27Version:1
Title:CVE-2018-0489 on Ubuntu 18.04 LTS (bionic) - high.
Description:Shibboleth XMLTooling-C before 1.6.4, as used in Shibboleth Service Provider before 2.6.1.4 on Windows and other products, mishandles digital signatures of user data, which allows remote attackers to obtain sensitive information or conduct impersonation attacks via crafted XML data. NOTE: this issue exists because of an incomplete fix for CVE-2018-0486.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-0489
Platform(s):Ubuntu 18.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 18.04 LTS (bionic) is installed.
  • AND xmltooling package in bionic, is related to the CVE in some way and has been fixed (note: '1.6.4-1ubuntu2').
  • BACK