CVEs Blog | G5 Cyber Security

CVE-2015-1337 – Simple Streams (simplestreams) does not properly verify the GPG signature

Simple Streams (simplestreams) does not properly verify the GPG signatures of disk image files, which allows remote mirror servers to spoof disk images and have unspecified other impact via a 403 (aka Forbidden) response.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1337

Reference (s):

Exit mobile version