Oval Definition:oval:com.ubuntu.xenial:def:2017178470000000
Revision Date:2017-12-27Version:1
Title:CVE-2017-17847 on Ubuntu 16.04 LTS (xenial) - high.
Description:An issue was discovered in Enigmail before 1.9.9. Signature spoofing is possible because the UI does not properly distinguish between an attachment signature, and a signature that applies to the entire containing message, aka TBE-01-021. This is demonstrated by an e-mail message with an attachment that is a signed e-mail message in message/rfc822 format.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-17847
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND enigmail package in xenial was vulnerable but has been fixed (note: '2:1.9.9-0ubuntu0.16.04.1').
  • BACK