Oval Definition:oval:com.ubuntu.xenial:def:201728250000000
Revision Date:2018-04-20Version:1
Title:CVE-2017-2825 on Ubuntu 16.04 LTS (xenial) - high.
Description:In the trapper functionality of Zabbix Server 2.4.x, specifically crafted trapper packets can pass database logic checks, resulting in database writes. An attacker can set up a Man-in-the-Middle server to alter trapper requests made between an active Zabbix proxy and Server to trigger this vulnerability. It was discovered that Zabbix incorrectly handled certain requests. A remote attacker could possibly use this issue to execute arbitrary code.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-2825
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND zabbix package in xenial is affected and needs fixing.
  • BACK