Oval Definition:oval:com.ubuntu.cosmic:def:20184117000
Revision Date:2018-04-03Version:1
Title:CVE-2018-4117 on Ubuntu 18.10 (cosmic) - medium.
Description:An issue was discovered in certain Apple products. iOS before 11.3 is affected. Safari before 11.1 is affected. iCloud before 7.4 on Windows is affected. iTunes before 12.7.4 on Windows is affected. watchOS before 4.3 is affected. The issue involves the fetch API in the "WebKit" component. It allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted web site.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-4117
Platform(s):Ubuntu 18.10
Product(s):
Definition Synopsis
  • Ubuntu 18.10 (cosmic) is installed.
  • AND Package Information
  • The 'chromium-browser' package in cosmic was vulnerable but has been fixed (note: '68.0.3440.75-0ubuntu1').
  • OR The vulnerability of the 'qtwebkit-opensource-src' package in cosmic is not known (status: 'needs-triage'). It is pending evaluation.
  • OR The vulnerability of the 'qtwebkit-source' package in cosmic is not known (status: 'needs-triage'). It is pending evaluation.
  • OR NOT While related to the CVE in some way, the 'webkit2gtk' package in cosmic is not affected (note: '2.20.0-2').
  • OR The vulnerability of the 'webkitgtk' package in cosmic is not known (status: 'needs-triage'). It is pending evaluation.
  • BACK