Oval Definition:oval:org.cisecurity:def:75
Revision Date:2016-02-08Version:2
Title:DSA-3363-1 -- owncloud-client -- security update
Description:Johannes Kliemann discovered a vulnerability in ownCloud Desktop Client, the client-side of the ownCloud file sharing services. The vulnerability allows man-in-the-middle attacks in situations where the server is using self-signed certificates and the connection is already established. If the user in the client side manually distrusts the new certificate, the file syncing will continue using the malicious server as valid.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2015-4456
DSA-3363-1
Platform(s):Debian 8
Product(s):owncloud-client
Definition Synopsis
  • Debian 8 is installed
  • AND owncloud-client is earlier than 0:1.7.0~beta1+really1.6.4+dfsg-1+deb8u1
  • BACK