Oval Definition:oval:com.ubuntu.precise:def:20165420000
Revision Date:2016-08-10Version:1
Title:CVE-2016-5420 on Ubuntu 12.04 LTS (precise) - medium.
Description:curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-5420
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND The 'curl' package in precise was vulnerable but has been fixed (note: '7.22.0-3ubuntu4.16').
  • BACK