Oval Definition:oval:com.ubuntu.disco:def:2018210290000000
Revision Date:2019-10-30Version:1
Title:CVE-2018-21029 on Ubuntu 19.04 (disco) - low.
Description:** DISPUTED ** systemd 239 through 244 accepts any certificate signed by a trusted certificate authority for DNS Over TLS. Server Name Indication (SNI) is not sent, and there is no hostname validation with the GnuTLS backend. NOTE: This has been disputed by the developer as not a vulnerability since hostname validation does not have anything to do with this issue (i.e. there is no hostname to be sent).
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-21029
Platform(s):Ubuntu 19.04
Product(s):
Definition Synopsis
  • Ubuntu 19.04 (disco) is installed.
  • AND systemd package in disco is affected and needs fixing.
  • BACK