Oval Definition:oval:com.ubuntu.xenial:def:20162216000
Revision Date:2016-04-07Version:1
Title:CVE-2016-2216 on Ubuntu 16.04 LTS (xenial) - low.
Description:The HTTP header parsing code in Node.js 0.10.x before 0.10.42, 0.11.6 through 0.11.16, 0.12.x before 0.12.10, 4.x before 4.3.0, and 5.x before 5.6.0 allows remote attackers to bypass an HTTP response-splitting protection mechanism via UTF-8 encoded Unicode characters in the HTTP header, as demonstrated by %c4%8d%c4%8a.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-2216
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND The 'nodejs' package in xenial is affected and needs fixing.
  • BACK