Oval Definition:oval:com.ubuntu.precise:def:20137440000
Revision Date:2016-06-07Version:1
Title:CVE-2013-7440 on Ubuntu 12.04 LTS (precise) - low.
Description:The ssl.match_hostname function in CPython (aka Python) before 2.7.9 and 3.x before 3.3.3 does not properly handle wildcards in hostnames, which might allow man-in-the-middle attackers to spoof servers via a crafted certificate.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2013-7440
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND Package Information
  • NOT While related to the CVE in some way, the 'python2.7' package in precise is not affected (note: 'doesn't implement ssl.match_hostname').
  • OR While related to the CVE in some way, a decision has been made to ignore it.
  • BACK