Module::Signature before 0.74 allows remote attackers to bypass signature verification for files via a signature file that does not list the files.
| Software | From | Fixed in |
|---|---|---|
| canonical / ubuntu_linux | 12.04 | 12.04.x |
| canonical / ubuntu_linux | 14.10 | 14.10.x |
| canonical / ubuntu_linux | 14.04 | 14.04.x |
| canonical / ubuntu_linux | 15.04 | 15.04.x |
| module-signature_project / module-signature | - | 0.73.x |