Oval Definition:oval:com.ubuntu.trusty:def:20163166000
Revision Date:2016-04-12Version:1
Title:CVE-2016-3166 on Ubuntu 14.04 LTS (trusty) - untriaged.
Description:CRLF injection vulnerability in the drupal_set_header function in Drupal 6.x before 6.38, when used with PHP before 5.1.2, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks by leveraging a module that allows user-submitted data to appear in HTTP headers.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-3166
Platform(s):Ubuntu 14.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 14.04 LTS (trusty) is installed.
  • AND NOT While related to the CVE in some way, the 'drupal7' package in trusty is not affected.
  • BACK