Oval Definition:oval:org.opensuse.security:def:201810936
Revision Date:2022-05-22Version:1
Title:CVE-2018-10936
Description:

A weakness was found in postgresql-jdbc before version 42.2.5. It was possible to provide an SSL Factory and not check the host name if a host name verifier was not provided to the driver. This could lead to a condition where a man-in-the-middle attacker could masquerade as a trusted server by providing a certificate for the wrong host, as long as it was signed by a trusted CA.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2018-10936
SUSE-SU-2020:3466-1
Mitre CVE-2018-10936
SUSE CVE-2018-10936
SUSE-SU-2020:3466-1
Platform(s):Image SLES15-SP1-Manager-4-0-Azure-BYOS-Proxy
Image SLES15-SP1-Manager-4-0-Azure-BYOS-Server
Image SLES15-SP1-Manager-4-0-EC2-HVM-BYOS-Proxy
Image SLES15-SP1-Manager-4-0-EC2-HVM-BYOS-Server
Image SLES15-SP1-Manager-4-0-GCE-BYOS-Proxy
Image SLES15-SP1-Manager-4-0-GCE-BYOS-Server
SUSE Linux Enterprise Module for SUSE Manager Server 4.0
SUSE Manager Server 4.0
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for SUSE Manager Server 4.0 is installed
  • AND Package Information
  • bind-formula-0.1.1603299886.60e4bcf-3.11 is installed
  • OR grafana-formula-0.2.2-4.13 is installed
  • OR postgresql-jdbc-42.2.10-3.3 is installed
  • OR prometheus-exporters-formula-0.7.5-3.16 is installed
  • OR prometheus-formula-0.2.3-4.16 is installed
  • OR python3-spacewalk-backend-libs-4.0.35-3.38 is installed
  • OR salt-netapi-client-0.18.0-4.12 is installed
  • OR spacewalk-admin-4.0.12-3.15 is installed
  • OR spacewalk-backend-4.0.35-3.38 is installed
  • OR spacewalk-backend-app-4.0.35-3.38 is installed
  • OR spacewalk-backend-applet-4.0.35-3.38 is installed
  • OR spacewalk-backend-config-files-4.0.35-3.38 is installed
  • OR spacewalk-backend-config-files-common-4.0.35-3.38 is installed
  • OR spacewalk-backend-config-files-tool-4.0.35-3.38 is installed
  • OR spacewalk-backend-iss-4.0.35-3.38 is installed
  • OR spacewalk-backend-iss-export-4.0.35-3.38 is installed
  • OR spacewalk-backend-package-push-server-4.0.35-3.38 is installed
  • OR spacewalk-backend-server-4.0.35-3.38 is installed
  • OR spacewalk-backend-sql-4.0.35-3.38 is installed
  • OR spacewalk-backend-sql-postgresql-4.0.35-3.38 is installed
  • OR spacewalk-backend-tools-4.0.35-3.38 is installed
  • OR spacewalk-backend-xml-export-libs-4.0.35-3.38 is installed
  • OR spacewalk-backend-xmlrpc-4.0.35-3.38 is installed
  • OR spacewalk-base-4.0.25-3.36 is installed
  • OR spacewalk-base-minimal-4.0.25-3.36 is installed
  • OR spacewalk-base-minimal-config-4.0.25-3.36 is installed
  • OR spacewalk-html-4.0.25-3.36 is installed
  • OR spacewalk-java-4.0.40-3.48 is installed
  • OR spacewalk-java-config-4.0.40-3.48 is installed
  • OR spacewalk-java-lib-4.0.40-3.48 is installed
  • OR spacewalk-java-postgresql-4.0.40-3.48 is installed
  • OR spacewalk-taskomatic-4.0.40-3.48 is installed
  • OR spacewalk-web-4.0.25-3.36 is installed
  • OR susemanager-4.0.32-3.46 is installed
  • OR susemanager-schema-4.0.23-3.32 is installed
  • OR susemanager-sls-4.0.31-3.37 is installed
  • OR susemanager-tools-4.0.32-3.46 is installed
  • OR susemanager-web-libs-4.0.25-3.36 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for SUSE Manager Server 4.0 is installed
  • AND Package Information
  • bind-formula-0.1.1603299886.60e4bcf-3.11.1 is installed
  • OR grafana-formula-0.2.2-4.13.1 is installed
  • OR postgresql-jdbc-42.2.10-3.3.1 is installed
  • OR prometheus-exporters-formula-0.7.5-3.16.1 is installed
  • OR prometheus-formula-0.2.3-4.16.1 is installed
  • OR python3-spacewalk-backend-libs-4.0.35-3.38.1 is installed
  • OR salt-netapi-client-0.18.0-4.12.1 is installed
  • OR spacewalk-admin-4.0.12-3.15.1 is installed
  • OR spacewalk-backend-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-app-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-applet-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-config-files-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-config-files-common-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-config-files-tool-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-iss-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-iss-export-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-package-push-server-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-server-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-sql-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-sql-postgresql-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-tools-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-xml-export-libs-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-xmlrpc-4.0.35-3.38.1 is installed
  • OR spacewalk-base-4.0.25-3.36.1 is installed
  • OR spacewalk-base-minimal-4.0.25-3.36.1 is installed
  • OR spacewalk-base-minimal-config-4.0.25-3.36.1 is installed
  • OR spacewalk-html-4.0.25-3.36.1 is installed
  • OR spacewalk-java-4.0.40-3.48.2 is installed
  • OR spacewalk-java-config-4.0.40-3.48.2 is installed
  • OR spacewalk-java-lib-4.0.40-3.48.2 is installed
  • OR spacewalk-java-postgresql-4.0.40-3.48.2 is installed
  • OR spacewalk-taskomatic-4.0.40-3.48.2 is installed
  • OR susemanager-4.0.32-3.46.1 is installed
  • OR susemanager-schema-4.0.23-3.32.1 is installed
  • OR susemanager-sls-4.0.31-3.37.1 is installed
  • OR susemanager-tools-4.0.32-3.46.1 is installed
  • OR susemanager-web-libs-4.0.25-3.36.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Module for SUSE Manager Server 4.0 is installed
  • OR SUSE Manager Server 4.0 is installed
  • AND
  • bind-formula-0.1.1603299886.60e4bcf-3.11.1 is installed
  • OR grafana-formula-0.2.2-4.13.1 is installed
  • OR postgresql-jdbc-42.2.10-3.3.1 is installed
  • OR prometheus-exporters-formula-0.7.5-3.16.1 is installed
  • OR prometheus-formula-0.2.3-4.16.1 is installed
  • OR python3-spacewalk-backend-libs-4.0.35-3.38.1 is installed
  • OR salt-netapi-client-0.18.0-4.12.1 is installed
  • OR spacewalk-admin-4.0.12-3.15.1 is installed
  • OR spacewalk-backend-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-app-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-applet-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-config-files-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-config-files-common-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-config-files-tool-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-iss-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-iss-export-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-package-push-server-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-server-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-sql-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-sql-postgresql-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-tools-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-xml-export-libs-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-xmlrpc-4.0.35-3.38.1 is installed
  • OR spacewalk-base-4.0.25-3.36.1 is installed
  • OR spacewalk-base-minimal-4.0.25-3.36.1 is installed
  • OR spacewalk-base-minimal-config-4.0.25-3.36.1 is installed
  • OR spacewalk-html-4.0.25-3.36.1 is installed
  • OR spacewalk-java-4.0.40-3.48.2 is installed
  • OR spacewalk-java-config-4.0.40-3.48.2 is installed
  • OR spacewalk-java-lib-4.0.40-3.48.2 is installed
  • OR spacewalk-java-postgresql-4.0.40-3.48.2 is installed
  • OR spacewalk-taskomatic-4.0.40-3.48.2 is installed
  • OR susemanager-4.0.32-3.46.1 is installed
  • OR susemanager-schema-4.0.23-3.32.1 is installed
  • OR susemanager-sls-4.0.31-3.37.1 is installed
  • OR susemanager-tools-4.0.32-3.46.1 is installed
  • OR susemanager-web-libs-4.0.25-3.36.1 is installed
  • OR Package Information
  • Image SLES15-SP1-Manager-4-0-Azure-BYOS-Proxy is installed
  • OR Image SLES15-SP1-Manager-4-0-EC2-HVM-BYOS-Proxy is installed
  • OR Image SLES15-SP1-Manager-4-0-GCE-BYOS-Proxy is installed
  • AND
  • python3-spacewalk-backend-libs-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-4.0.35-3.38.1 is installed
  • OR spacewalk-base-minimal-4.0.25-3.36.1 is installed
  • OR spacewalk-base-minimal-config-4.0.25-3.36.1 is installed
  • OR Package Information
  • Image SLES15-SP1-Manager-4-0-Azure-BYOS-Server is installed
  • OR Image SLES15-SP1-Manager-4-0-EC2-HVM-BYOS-Server is installed
  • OR Image SLES15-SP1-Manager-4-0-GCE-BYOS-Server is installed
  • AND
  • postgresql-jdbc-42.2.10-3.3.1 is installed
  • OR python3-spacewalk-backend-libs-4.0.35-3.38.1 is installed
  • OR salt-netapi-client-0.18.0-4.12.1 is installed
  • OR spacewalk-admin-4.0.12-3.15.1 is installed
  • OR spacewalk-backend-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-app-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-applet-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-config-files-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-config-files-common-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-config-files-tool-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-iss-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-iss-export-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-package-push-server-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-server-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-sql-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-sql-postgresql-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-tools-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-xml-export-libs-4.0.35-3.38.1 is installed
  • OR spacewalk-backend-xmlrpc-4.0.35-3.38.1 is installed
  • OR spacewalk-base-4.0.25-3.36.1 is installed
  • OR spacewalk-base-minimal-4.0.25-3.36.1 is installed
  • OR spacewalk-base-minimal-config-4.0.25-3.36.1 is installed
  • OR spacewalk-html-4.0.25-3.36.1 is installed
  • OR spacewalk-java-4.0.40-3.48.2 is installed
  • OR spacewalk-java-config-4.0.40-3.48.2 is installed
  • OR spacewalk-java-lib-4.0.40-3.48.2 is installed
  • OR spacewalk-java-postgresql-4.0.40-3.48.2 is installed
  • OR spacewalk-taskomatic-4.0.40-3.48.2 is installed
  • OR susemanager-4.0.32-3.46.1 is installed
  • OR susemanager-schema-4.0.23-3.32.1 is installed
  • OR susemanager-sls-4.0.31-3.37.1 is installed
  • OR susemanager-tools-4.0.32-3.46.1 is installed
  • OR susemanager-web-libs-4.0.25-3.36.1 is installed
  • BACK