Oval Definition:oval:com.ubuntu.bionic:def:201811386000
Revision Date:2018-06-13Version:1
Title:CVE-2018-11386 on Ubuntu 18.04 LTS (bionic) - medium.
Description:An issue was discovered in the HttpFoundation component in Symfony 2.7.x before 2.7.48, 2.8.x before 2.8.41, 3.3.x before 3.3.17, 3.4.x before 3.4.11, and 4.0.x before 4.0.11. The PDOSessionHandler class allows storing sessions on a PDO connection. Under some configurations and with a well-crafted payload, it was possible to do a denial of service on a Symfony application without too much resources.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-11386
Platform(s):Ubuntu 18.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 18.04 LTS (bionic) is installed.
  • AND The 'symfony' package in bionic was vulnerable but has been fixed (note: '3.4.6+dfsg-1ubuntu0.1').
  • BACK