Oval Definition:oval:com.ubuntu.xenial:def:201654200000000
Revision Date:2016-08-10Version:1
Title:CVE-2016-5420 on Ubuntu 16.04 LTS (xenial) - medium.
Description:curl and libcurl before 7.50.1 do not check the client certificate when choosing the TLS connection to reuse, which might allow remote attackers to hijack the authentication of the connection by leveraging a previously created connection with a different client certificate.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-5420
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND curl package in xenial was vulnerable but has been fixed (note: '7.47.0-1ubuntu2.1').
  • BACK