Vulnerabilities > Simpestreams Project

DATE CVE VULNERABILITY TITLE RISK
2015-10-09 CVE-2015-1337 Improper Input Validation vulnerability in multiple products
Simple Streams (simplestreams) does not properly verify the GPG signatures of disk image files, which allows remote mirror servers to spoof disk images and have unspecified other impact via a 403 (aka Forbidden) response.
6.8