Oval Definition:
oval:com.ubuntu.trusty:def:201817075000
Revision Date
:
2018-09-15
Version
:
1
Title
:
CVE-2018-17075 on Ubuntu 14.04 LTS (trusty) - medium.
Description
:
The html package (aka x/net/html) before 2018-07-13 in Go mishandles "in frameset" insertion mode, leading to a "panic: runtime error" for html.Parse of
,
, or
. This is related to HTMLTreeBuilder.cpp in WebKit.
Family
:
unix
Class
:
vulnerability
Status
:
Reference(s)
:
CVE-2018-17075
Platform(s)
:
Ubuntu 14.04 LTS
Product(s)
:
Definition Synopsis
Ubuntu 14.04 LTS (trusty) is installed.
AND
NOT
While related to the CVE in some way, the 'golang-go.net-dev' package in trusty is not affected (note: 'code not present').
BACK