Oval Definition:oval:com.ubuntu.xenial:def:201318640000000
Revision Date:2014-05-23Version:1
Title:CVE-2013-1864 on Ubuntu 16.04 LTS (xenial) - medium.
Description:The Portable Tool Library (aka PTLib) before 2.10.10, as used in Ekiga before 4.0.1, does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted PXML document containing a large number of nested entity references, aka a "billion laughs attack."
Family:unixClass:vulnerability
Status:Reference(s):CVE-2013-1864
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND NOT libpt2.10.10v5 package in xenial, while related to the CVE in some way, is not affected.
  • BACK