Vulnerability Summary for the Week of August 28, 2017
Total Page:16
File Type:pdf, Size:1020Kb
Vulnerability Summary for the Week of August 28, 2017 The vulnerabilities are based on the CVE vulnerability naming standard and are organized according to severity, determined by the Common Vulnerability Scoring System (CVSS) standard. The division of high, medium, and low severities correspond to the following scores: High - Vulnerabilities will be labeled High severity if they have a CVSS base score of 7.0 - 10.0 Medium - Vulnerabilities will be labeled Medium severity if they have a CVSS base score of 4.0 - 6.9 Low - Vulnerabilities will be labeled Low severity if they have a CVSS base score of 0.0 - 3.9 High Vulnerabilities CVS S Primary Publish Scor Source & Vendor -- Product Description ed e Patch Info Aruba Networks ClearPass Policy Manager before 6.4.7 and 6.5.x before 6.5.2 allows remote authenticated administrators to write to arbitrary files within the underlying operating system and consequently cause a denial of service or gain privileges by leveraging CVE-2015- incorrect 3653 permission 2017- CONFIRM(li arubanetworks -- clearpass checking. 08-29 9.0 nk is external) Aruba Networks ClearPass Policy Manager before 6.4.7 and 6.5.x before 6.5.2 allows remote CVE-2015- authenticated 3654 administrators to 2017- CONFIRM(li arubanetworks -- clearpass gain root 08-29 9.0 nk is external) CVS S Primary Publish Scor Source & Vendor -- Product Description ed e Patch Info privileges via unspecified vectors, a different vulnerability than CVE-2015-4649. Aruba Networks ClearPass Policy Manager before 6.4.7 and 6.5.x before 6.5.2 allows remote authenticated administrators to gain root CVE-2015- privileges via 4649 unspecified CONFIRM(li vectors, a different nk is external) vulnerability than 2017- BID(link is arubanetworks -- clearpass CVE-2015-3654. 08-29 9.0 external) Hard coded weak CVE-2014- credentials in 8426 Barracuda Load MISC(link is Balancer 2017- external) barracuda -- load_balancer 5.0.0.015. 08-28 7.5 FULLDISC Privilege escalation vulnerability in Barracuda Load Balancer 5.0.0.015 CVE-2014- via the use of an 8428 improperly MISC(link is protected SSH 2017- external) barracuda -- load_balancer key. 08-28 7.5 FULLDISC SQL injection vulnerability in the baserCMS 3.0.14 and earlier, CVE-2017- 4.0.5 and earlier 10842 allows remote JVN(link is attackers to external) execute arbitrary 2017- MISC(link is basercms -- basercms SQL commands 08-28 7.5 external) CVS S Primary Publish Scor Source & Vendor -- Product Description ed e Patch Info via unspecified vectors. CVE-2014- 9637 CONFIRM FEDORA FEDORA GNU patch 2.7.2 MLIST(link and earlier allows is external) remote attackers BID(link is to cause a denial external) of service UBUNTU(lin (memory k is external) consumption and CONFIRM(li segmentation nk is external) fault) via a crafted 2017- CONFIRM canonical -- ubuntu_linux diff file. 08-25 7.1 CONFIRM Apport before 2.17.2-0ubuntu1.1 as packaged in Ubuntu 15.04, before 2.14.70ubuntu8.5 as packaged in Ubuntu 14.10, before 2.14.1- 0ubuntu3.11 as packaged in Ubuntu 14.04 LTS, and before 2.0.1-0ubuntu17.9 as packaged in Ubuntu 12.04 LTS allow local users to write to CVE-2015- arbitrary files and 1324 gain root BID(link is privileges by external) leveraging UBUNTU(lin incorrect handling k is external) of permissions 2017- CONFIRM(li canonical -- ubuntu_linux when generating 08-25 7.2 nk is external) CVS S Primary Publish Scor Source & Vendor -- Product Description ed e Patch Info core dumps for setuid binaries. CVE-2015- Directory traversal 1395 vulnerability in FEDORA GNU patch FEDORA versions which MLIST(link support Git-style is external) patching before BID(link is 2.7.3 allows external) remote attackers UBUNTU(lin to write to k is external) arbitrary files with MISC the permissions of CONFIRM(li the target user via nk is external) a .. (dot dot) in a 2017- CONFIRM canonical -- ubuntu_linux diff file name. 08-25 7.8 CONFIRM CrushFTP 8.x CVE-2017- before 8.2.0 has a 14035 serialization 2017- CONFIRM(li crushftp -- crushftp vulnerability. 08-30 7.5 nk is external) The C++ symbol demangler routine in cplus-dem.c in libiberty, as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (excessive memory allocation and application crash) via a crafted file, as demonstrated by a call from the Binary File Descriptor (BFD) CVE-2017- library (aka 2017- 13716 gnu -- binutils libbfd). 08-28 7.1 MISC CVS S Primary Publish Scor Source & Vendor -- Product Description ed e Patch Info GraphicsMagick 1.3.26 has a denial of service issue in ReadJNXImage() in coders/jnx.c whereby large amounts of CPU CVE-2017- and memory 13775 resources may be CONFIRM(li consumed nk is external) although the file MISC(link is itself does not external) support the 2017- BID(link is graphicsmagick -- graphicsmagick requests. 08-30 7.1 external) GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version!=10 case that results in the reader not returning; it would CVE-2017- cause large 13776 amounts of CPU CONFIRM(li and memory nk is external) consumption MISC(link is although the external) crafted file itself 2017- BID(link is graphicsmagick -- graphicsmagick does not request it. 08-30 7.1 external) GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() CVE-2017- in a coders/xbm.c 13777 "Read hex image CONFIRM(li data" version==10 nk is external) case that results in MISC(link is the reader not external) returning; it would 2017- BID(link is graphicsmagick -- graphicsmagick cause large 08-30 7.1 external) CVS S Primary Publish Scor Source & Vendor -- Product Description ed e Patch Info amounts of CPU and memory consumption although the crafted file itself does not request it. The WritePixelCacheP ixels function in ImageMagick 7.0.6-6 allows remote attackers to cause a denial CVE-2017- of service (CPU 12875 consumption) via 2017- CONFIRM(li imagemagick -- imagemagick a crafted file. 08-29 7.1 nk is external) CVE-2013- 7426 Insecure MLIST(link Temporary file is external) vulnerability in BID(link is /tmp/kamailio_fifo 2017- external) kamailio -- kamailio in kamailio 4.0.1. 08-29 7.5 CONFIRM In Kaspersky Internet Security for Android 11.12.4.1622, some of application exports activities have weak permissions, which might be used by a malware application to get unauthorized CVE-2017- access to the 12816 product BID(link is functionality by external) using Android 2017- CONFIRM(li kaspersky -- kaspersky_internet_security IPC. 08-25 7.5 nk is external) CVS S Primary Publish Scor Source & Vendor -- Product Description ed e Patch Info Untrusted search path vulnerability in The electronic authentication system based on the commercial registration system "The CRCA user's Software" Ver1.8 and earlier allows CVE-2017- an attacker to gain 10831 privileges via a MISC(link is moj.go -- Trojan horse DLL external) commercial_registration_electronic_authenticati in an unspecified 2017- JVN(link is on_software directory. 08-28 9.3 external) "Dokodemo eye Smart HD" SCR02HD Firmware 1.0.3.1000 and earlier allows remote attackers CVE-2017- to execute 10832 arbitrary OS MISC(link is commands via external) unspecified 2017- JVN(link is nippon-antenna -- scr02hd_firmware vectors. 08-28 10.0 external) Untrusted search path vulnerability in Flets Azukeru for Windows Auto Backup Tool v1.0.3.0 and earlier allows an CVE-2017- attacker to gain 10827 privileges via a MISC(link is Trojan horse DLL external) in an unspecified 2017- JVN(link is ntt -- flets_azukuu_pc_automatic_backup_tool directory. 08-28 9.3 external) Untrusted search 2017- CVE-2017- ntt -- flets_install_tool path vulnerability 08-28 9.3 10828 CVS S Primary Publish Scor Source & Vendor -- Product Description ed e Patch Info in Flets Install MISC(link is Tool all versions external) distributed JVN(link is through the external) website till 2017 August 8 allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory. Untrusted search path vulnerability in Flets Setsuzoku Tool for Windows all versions allows CVE-2017- an attacker to gain 2242 privileges via a MISC(link is Trojan horse DLL external) in an unspecified 2017- JVN(link is ntt -- flets_setsuzoku_tool directory. 08-28 9.3 external) Untrusted search path vulnerability in Security Kinou Mihariban v1.0.21 and earlier allows CVE-2017- an attacker to gain 10826 privileges via a MISC(link is Trojan horse DLL external) in an unspecified 2017- JVN(link is ntt -- security_kinou_mihariban directory. 08-28 9.3 external) Untrusted search path vulnerability in Security Setup Tool all versions allows an attacker CVE-2017- to gain privileges 10830 via a Trojan horse MISC(link is DLL in an external) unspecified 2017- JVN(link is ntt -- security_setup_tool directory. 08-28 9.3 external) CVS S Primary Publish Scor Source & Vendor -- Product Description ed e Patch Info Untrusted search path vulnerability in Photo Collection PC Software Ver.4.0.2 and earlier allows an attacker to gain privileges via a CVE-2017- Trojan horse DLL 10812 in an unspecified 2017- JVN(link is nttdocomo -- photo_collection_pc_software directory. 08-28 9.3 external) Untrusted search path vulnerability in Optimal Guard 1.1.21 and earlier allows an attacker CVE-2017- to gain privileges 10836 via a Trojan horse JVN(link is DLL in an external) unspecified 2017- MISC(link is optim -- optimal_guard directory. 08-28 9.3 external) CVE-2014- 9558 MISC(link is Multiple SQL external) injection FULLDISC vulnerabilities in 2017- BID(link is smartcms -- smartcms SmartCMS v.2. 08-28 7.5 external) A Stack-based Buffer Overflow issue was discovered in SpiderControl SCADA MicroBrowser Versions CVE-2017- 1.6.30.144 and 12707 prior.