Oval Definition:oval:com.ubuntu.xenial:def:201812368000
Revision Date:2018-10-18Version:1
Title:CVE-2018-12368 on Ubuntu 16.04 LTS (xenial) - medium.
Description:Windows 10 does not warn users before opening executable files with the SettingContent-ms extension even when they have been downloaded from the internet and have the "Mark of the Web." Without the warning, unsuspecting users unfamiliar with this new file type might run an unwanted executable. This also allows a WebExtension with the limited downloads.open permission to execute arbitrary code without user interaction on Windows 10 systems. *Note: this issue only affects Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-12368
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND Package Information
  • NOT While related to the CVE in some way, the 'firefox' package in xenial is not affected.
  • OR NOT While related to the CVE in some way, the 'thunderbird' package in xenial is not affected.
  • BACK