Oval Definition:oval:com.ubuntu.xenial:def:20181000838000
Revision Date:2018-12-20Version:1
Title:CVE-2018-1000838 on Ubuntu 16.04 LTS (xenial) - medium.
Description:autopsy version <= 4.9.0 contains a XML External Entity (XXE) vulnerability in CaseMetadata XML Parser that can result in Disclosure of confidential data, denial of service, SSRF, port scanning. This attack appear to be exploitable via Specially crafted CaseMetadata.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-1000838
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND NOT While related to the CVE in some way, the 'autopsy' package in xenial is not affected (note: 'code not present').
  • BACK