CVE-2013-1058
23.11.2013, 18:55
maas-import-pxe-files in MAAS before 13.10 does not verify the integrity of downloaded files, which allows remote attackers to modify these files via a man-in-the-middle (MITM) attack.Enginsight
| Vendor | Product | Version |
|---|---|---|
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 12.10 |
| canonical | ubuntu_linux | 13.04 |
| canonical | maas | 𝑥 ≤ 12.04.4 |
| canonical | maas | 12.04.1 |
| canonical | maas | 12.04.2 |
| canonical | maas | 12.04.3 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References