Oval Definition:oval:com.ubuntu.cosmic:def:2018164760000000
Revision Date:2018-11-30Version:1
Title:CVE-2018-16476 on Ubuntu 18.10 (cosmic) - medium.
Description:A Broken Access Control vulnerability in Active Job versions >= 4.2.0 allows an attacker to craft user input which can cause Active Job to deserialize it using GlobalId and give them access to information that they should not have. This vulnerability has been fixed in versions 4.2.11, 5.0.7.1, 5.1.6.1, and 5.2.1.1.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-16476
Platform(s):Ubuntu 18.10
Product(s):
Definition Synopsis
  • Ubuntu 18.10 (cosmic) is installed.
  • AND rails: while related to the CVE in some way, a decision has been made to ignore this issue (note: 'reached end-of-life').
  • BACK