Oval Definition:oval:com.ubuntu.cosmic:def:20181335000
Revision Date:2018-04-25Version:1
Title:CVE-2018-1335 on Ubuntu 18.10 (cosmic) - untriaged.
Description:From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to inject commands into the command line of the server running tika-server. This vulnerability only affects those running tika-server on a server that is open to untrusted clients. The mitigation is to upgrade to Tika 1.18.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-1335
Platform(s):Ubuntu 18.10
Product(s):
Definition Synopsis
  • Ubuntu 18.10 (cosmic) is installed.
  • AND The vulnerability of the 'tika' package in cosmic is not known (status: 'needs-triage'). It is pending evaluation.
  • BACK