Oval Definition:oval:com.ubuntu.trusty:def:20177814000
Revision Date:2018-06-11Version:1
Title:CVE-2017-7814 on Ubuntu 14.04 LTS (trusty) - medium.
Description:File downloads encoded with "blob:" and "data:" URL elements bypassed normal file download checks though the Phishing and Malware Protection feature and its block lists of suspicious sites and files. This would allow malicious sites to lure users into downloading executables that would otherwise be detected as suspicious. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-7814
Platform(s):Ubuntu 14.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 14.04 LTS (trusty) is installed.
  • AND Package Information
  • The 'firefox' package in trusty was vulnerable but has been fixed (note: '56.0+build6-0ubuntu0.14.04.1').
  • OR The 'thunderbird' package in trusty was vulnerable but has been fixed (note: '1:52.4.0+build1-0ubuntu0.14.04.2').
  • BACK