Oval Definition:oval:com.ubuntu.xenial:def:201754540000000
Revision Date:2018-06-11Version:1
Title:CVE-2017-5454 on Ubuntu 16.04 LTS (xenial) - medium.
Description:A mechanism to bypass file system access protections in the sandbox to use the file picker to access different files than those selected in the file picker through the use of relative paths. This allows for read only access to the local file system. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 52.1, and Firefox < 53.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-5454
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND Package Information
  • firefox package in xenial was vulnerable but has been fixed (note: '53.0+build6-0ubuntu0.16.04.1').
  • OR thunderbird package in xenial was vulnerable but has been fixed (note: '1:52.1.1+build1-0ubuntu0.16.04.1').
  • BACK