Oval Definition:oval:com.ubuntu.bionic:def:201819443000
Revision Date:2018-11-22Version:1
Title:CVE-2018-19443 on Ubuntu 18.04 LTS (bionic) - medium.
Description:The client in Tryton 5.x before 5.0.1 tries to make a connection to the bus in cleartext instead of encrypted under certain circumstances in bus.py and jsonrpc.py. This connection attempt fails, but it contains in the header the current session of the user. This session could then be stolen by a man-in-the-middle.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-19443
Platform(s):Ubuntu 18.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 18.04 LTS (bionic) is installed.
  • AND The vulnerability of the 'tryton-client' package in bionic is not known (status: 'needs-triage'). It is pending evaluation.
  • BACK