Oval Definition:oval:com.ubuntu.disco:def:202017660000000
Revision Date:2020-01-10Version:1
Title:CVE-2020-1766 on Ubuntu 19.04 (disco) - medium.
Description:Due to improper handling of uploaded images it is possible in very unlikely and rare conditions to force the agents browser to execute malicious javascript from a special crafted SVG file rendered as inline jpg file. This issue affects: ((OTRS)) Community Edition 5.0.x version 5.0.39 and prior versions; 6.0.x version 6.0.24 and prior versions. OTRS 7.0.x version 7.0.13 and prior versions.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2020-1766
Platform(s):Ubuntu 19.04
Product(s):
Definition Synopsis
  • Ubuntu 19.04 (disco) is installed.
  • AND otrs2 package in disco is affected and may need fixing.
  • BACK