Ubuntu Security Update USN-7465-1: Mistral vulnerabilities

LinuxBot

Member
Joined
Apr 25, 2017
Messages
5,812
Reaction score
74
Credits
-1,257
It was discovered that Mistral incorrectly handled nested anchors in YAML files. An attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 18.04 LTS. (CVE-2018-16848) Pierre Gaxatte discovered that Mistral incorrectly handled erroneous SSH private key filename commands. An attacker could possibly use this issue to expose sensitive information. (CVE-2018-16849) It was discovered that Mistral incorrectly handled the permissions of sensitive log files. An attacker could possibly use this issue to expose sensitive information. This issue only affected Ubuntu 18.04 LTS. (CVE-2019-3866)

Continue reading...
 


Follow Linux.org

Staff online

Members online


Top