CVE-2013-1058
Publication date 12 September 2013
Last updated 24 July 2024
Ubuntu priority
maas-import-pxe-files in MAAS before 13.10 does not verify the integrity of downloaded files, which allows remote attackers to modify these files via a man-in-the-middle (MITM) attack.
Status
Package | Ubuntu Release | Status |
---|---|---|
maas | 13.10 saucy |
Not affected
|
13.04 raring |
Fixed 1.3+bzr1461+dfsg-0ubuntu2.3
|
|
12.10 quantal |
Fixed 1.2+bzr1373+dfsg-0ubuntu1.1
|
|
12.04 LTS precise |
Fixed 1.2+bzr1373+dfsg-0ubuntu1~12.04.4
|
|
10.04 LTS lucid | Not in release |
References
Related Ubuntu Security Notices (USN)
- USN-2013-1
- MAAS vulnerabilities
- 7 November 2013