") call. "> OVAL Reference oval:com.ubuntu.precise:def:20177957000 - CERT Civis.Net
Oval Definition:oval:com.ubuntu.precise:def:20177957000
Revision Date:2017-04-29Version:1
Title:CVE-2017-7957 on Ubuntu 12.04 LTS (precise) - medium.
Description:XStream through 1.4.9, when a certain denyTypes workaround is not used, mishandles attempts to create an instance of the primitive type 'void' during unmarshalling, leading to a remote application crash, as demonstrated by an xstream.fromXML("") call.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-7957
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND The vulnerability of the 'libxstream-java' package in precise is not known (status: 'needs-triage'). It is pending evaluation.
  • BACK