Oval Definition:oval:com.ubuntu.precise:def:20166794000
Revision Date:2016-10-28Version:1
Title:CVE-2016-6794 on Ubuntu 12.04 LTS (precise) - low.
Description:When a SecurityManager is configured, a web application's ability to read system properties should be controlled by the SecurityManager. Tomcat's system property replacement feature for configuration files could be used by a malicious web application to bypass the SecurityManager and read system properties that should not be visible.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-6794
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND Package Information
  • The 'tomcat6' package in precise was vulnerable but has been fixed (note: '6.0.35-1ubuntu3.9').
  • OR The 'tomcat7' package in precise is affected and needs fixing.
  • BACK