Oval Definition:oval:com.ubuntu.xenial:def:20177652000
Revision Date:2018-04-25Version:1
Title:CVE-2017-7652 on Ubuntu 16.04 LTS (xenial) - medium.
Description:In Eclipse Mosquitto 1.4.14, if a Mosquitto instance is set running with a configuration file, then sending a HUP signal to server triggers the configuration to be reloaded from disk. If there are lots of clients connected so that there are no more file descriptors/sockets available (default limit typically 1024 file descriptors on Linux), then opening the configuration file will fail.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2017-7652
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND The 'mosquitto' package in xenial was vulnerable but has been fixed (note: '1.4.8-1ubuntu0.16.04.4').
  • BACK