CVE-2014-7926
published 2015-01-22CVE-2014-7926: The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40.0.2214.91…
PriorityP431high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
2.22%
80.7th percentile
The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via vectors related to a zero-length quantifier.
Affected
13 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | icu | < icu 52.1-7.1 (bookworm) | icu 52.1-7.1 (bookworm) |
| chrome | <= 40.0.2214.85 | — | |
| icu-project | international_components_for_unicode | < 55.1 | 55.1 |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| oracle | communications_messaging_server | — | — |
| oracle | communications_messaging_server | — | — |
| redhat | enterprise_linux_desktop_supplementary | — | — |
| redhat | enterprise_linux_server_supplementary | — | — |
| redhat | enterprise_linux_server_supplementary_eus | — | — |
| redhat | enterprise_linux_workstation_supplementary | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv10.0CRITICAL
vendor_ubuntu10.0CRITICAL
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-vf27-fm4x-9fp4: The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40
ghsa_unreviewed·2022-05-14
CVE-2014-7926 [HIGH] GHSA-vf27-fm4x-9fp4: The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40
The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via vectors related to a zero-length quantifier.
OSV
icu vulnerabilities
osv·2015-03-05·CVSS 10.0
CVE-2013-1569 [CRITICAL] icu vulnerabilities
icu vulnerabilities
It was discovered that ICU incorrectly handled memory operations when
processing fonts. If an application using ICU processed crafted data, an
attacker could cause it to crash or potentially execute arbitrary code with
the privileges of the user invoking the program. This issue only affected
Ubuntu 12.04 LTS. (CVE-2013-1569, CVE-2013-2383, CVE-2013-2384,
CVE-2013-2419)
It was discovered that ICU incorrectly handled memory operations when
processing fonts. If an application using ICU processed crafted data, an
attacker could cause it to crash or potentially execute arbitrary code with
the privileges of the user invoking the program. (CVE-2014-6585,
CVE-2014-6591)
It was discovered that ICU incorrectly handled memory operations when
processing regular expressions. If a
OSV
oxide-qt vulnerabilities
osv·2015-01-26·CVSS 7.5
CVE-2014-7923 [HIGH] oxide-qt vulnerabilities
oxide-qt vulnerabilities
Several memory corruption bugs were discovered in ICU. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service via renderer crash
or execute arbitrary code with the privileges of the sandboxed render
process. (CVE-2014-7923, CVE-2014-7926)
A use-after-free was discovered in the IndexedDB implementation. If a user
were tricked in to opening a specially crafted website, an attacker could
potentially exploit this to cause a denial of service via application
crash or execute arbitrary code with the privileges of the user invoking
the program. (CVE-2014-7924)
A use-after free was discovered in the WebAudio implementation in Blink.
If a user were tricked in to opening a specially crafte
OSV
CVE-2014-7926: The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40
osv·2015-01-22·CVSS 7.5
CVE-2014-7926 [HIGH] CVE-2014-7926: The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40
The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via vectors related to a zero-length quantifier.
Ubuntu
ICU vulnerabilities
vendor_ubuntu·2015-03-10·CVSS 10.0
CVE-2013-1569 [CRITICAL] ICU vulnerabilities
Title: ICU vulnerabilities
Summary: ICU could be made to crash or run programs as your login if it processed
specially crafted data.
USN-2522-1 fixed vulnerabilities in ICU. On Ubuntu 12.04 LTS, the font
patches caused a regression when using LibreOffice Calc. The patches have
now been updated to fix the regression.
We apologize for the inconvenience.
Original advisory details:
It was discovered that ICU incorrectly handled memory operations when
processing fonts. If an application using ICU processed crafted data, an
attacker could cause it to crash or potentially execute arbitrary code with
the privileges of the user invoking the program. This issue only affected
Ubuntu 12.04 LTS. (CVE-2013-1569, CVE-2013-2383, CVE-2013-2384,
CVE-2013-2419)
It was discovered that ICU incorrectly ha
Ubuntu
ICU regression
vendor_ubuntu·2015-03-06·CVSS 10.0
[CRITICAL] ICU regression
Title: ICU regression
Summary: USN-2522-1 introduced a regression in ICU.
USN-2522-1 fixed vulnerabilities in ICU. On Ubuntu 12.04 LTS, the font
patches caused a regression when using LibreOffice Calc. The patches have
been temporarily backed out until the regression is investigated.
We apologize for the inconvenience.
Original advisory details:
It was discovered that ICU incorrectly handled memory operations when
processing fonts. If an application using ICU processed crafted data, an
attacker could cause it to crash or potentially execute arbitrary code with
the privileges of the user invoking the program. This issue only affected
Ubuntu 12.04 LTS. (CVE-2013-1569, CVE-2013-2383, CVE-2013-2384,
CVE-2013-2419)
It was discovered that ICU incorrectly handled memory operations when
proc
Ubuntu
ICU vulnerabilities
vendor_ubuntu·2015-03-05·CVSS 10.0
CVE-2013-1569 [CRITICAL] ICU vulnerabilities
Title: ICU vulnerabilities
Summary: ICU could be made to crash or run programs as your login if it processed
specially crafted data.
It was discovered that ICU incorrectly handled memory operations when
processing fonts. If an application using ICU processed crafted data, an
attacker could cause it to crash or potentially execute arbitrary code with
the privileges of the user invoking the program. This issue only affected
Ubuntu 12.04 LTS. (CVE-2013-1569, CVE-2013-2383, CVE-2013-2384,
CVE-2013-2419)
It was discovered that ICU incorrectly handled memory operations when
processing fonts. If an application using ICU processed crafted data, an
attacker could cause it to crash or potentially execute arbitrary code with
the privileges of the user invoking the program. (CVE-2014-6585,
CVE-2014
Ubuntu
Oxide vulnerabilities
vendor_ubuntu·2015-01-26·CVSS 7.5
CVE-2014-7923 [HIGH] Oxide vulnerabilities
Title: Oxide vulnerabilities
Summary: Several security issues were fixed in Oxide.
Several memory corruption bugs were discovered in ICU. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service via renderer crash
or execute arbitrary code with the privileges of the sandboxed render
process. (CVE-2014-7923, CVE-2014-7926)
A use-after-free was discovered in the IndexedDB implementation. If a user
were tricked in to opening a specially crafted website, an attacker could
potentially exploit this to cause a denial of service via application
crash or execute arbitrary code with the privileges of the user invoking
the program. (CVE-2014-7924)
A use-after free was discovered in the WebAudio implementation in Bli
Red Hat
ICU: regexp engine incorrect handling of a zero length quantifier
vendor_redhat·2015-01-21·CVSS 7.5
CVE-2014-7926 [HIGH] CWE-787 ICU: regexp engine incorrect handling of a zero length quantifier
ICU: regexp engine incorrect handling of a zero length quantifier
The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via vectors related to a zero-length quantifier.
Statement: The flaw is caused because the ICU regular expression compiler is unable to properly handle certain malformed patterns. Because of the way in which this flaw manifests itself, it can only be triggered via untrusted content, which is common for components such as web browsers, in this case, the Chromium browser.
This flaw has been rated moderate for ICU component in Red Hat products, because either i
Debian
CVE-2014-7926: icu - The Regular Expressions package in International Components for Unicode (ICU) 52...
vendor_debian·2014·CVSS 7.5
CVE-2014-7926 [HIGH] CVE-2014-7926: icu - The Regular Expressions package in International Components for Unicode (ICU) 52...
The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via vectors related to a zero-length quantifier.
Scope: local
bookworm: resolved (fixed in 52.1-7.1)
bullseye: resolved (fixed in 52.1-7.1)
forky: resolved (fixed in 52.1-7.1)
sid: resolved (fixed in 52.1-7.1)
trixie: resolved (fixed in 52.1-7.1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2014-7926 CVE-2014-9654 CVE-2014-7923 mingw-icu: various flaws [epel-7]
bugzilla·2015-02-06·CVSS 7.5
CVE-2014-7926 [HIGH] CVE-2014-7926 CVE-2014-9654 CVE-2014-7923 mingw-icu: various flaws [epel-7]
CVE-2014-7926 CVE-2014-9654 CVE-2014-7923 mingw-icu: various flaws [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
epel-7 tracking bug for mingw-icu: see blocks bug lis
Bugzilla
CVE-2014-7926 CVE-2014-9654 CVE-2014-7923 icu: various flaws [fedora-all]
bugzilla·2015-02-06·CVSS 7.5
CVE-2014-7926 [HIGH] CVE-2014-7926 CVE-2014-9654 CVE-2014-7923 icu: various flaws [fedora-all]
CVE-2014-7926 CVE-2014-9654 CVE-2014-7923 icu: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedo
Bugzilla
CVE-2014-7926 CVE-2014-9654 CVE-2014-7923 mingw-icu: various flaws [fedora-all]
bugzilla·2015-02-06·CVSS 7.5
CVE-2014-7926 [HIGH] CVE-2014-7926 CVE-2014-9654 CVE-2014-7923 mingw-icu: various flaws [fedora-all]
CVE-2014-7926 CVE-2014-9654 CVE-2014-7923 mingw-icu: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions o
Bugzilla
CVE-2014-7926 ICU: regexp engine incorrect handling of a zero length quantifier
bugzilla·2015-01-23·CVSS 7.5
CVE-2014-7926 [HIGH] CVE-2014-7926 ICU: regexp engine incorrect handling of a zero length quantifier
CVE-2014-7926 ICU: regexp engine incorrect handling of a zero length quantifier
An unspecified memory corruption flaw was found in the ICU component of the Chromium browser.
External References:
http://googlechromereleases.blogspot.com/2015/01/stable-update.html
Discussion:
Google Chrome bug is:
https://code.google.com/p/chromium/issues/detail?id=422824
However, the bug is currently not public. However, the following commit can be identified using the bug id:
https://chromium.googlesource.com/chromium/deps/icu/+/3af4ce5982311035e5f36803d547c0befa576c8c
It covers two Chrome bugs, the other one is associated with CVE-2014-7923 also fixed in Chrome 40.0.2214.91.
The commit references ICU upstream bugs, which are also currently non-public. ICU bug and commit links follow:
http://bug
Bugzilla
CVE-2014-7923 ICU: regexp engine missing look-behind expression range check
bugzilla·2015-01-23·CVSS 7.5
CVE-2014-7923 [HIGH] CVE-2014-7923 ICU: regexp engine missing look-behind expression range check
CVE-2014-7923 ICU: regexp engine missing look-behind expression range check
An unspecified memory corruption flaw was found in the ICU component of the Chromium browser.
External References:
http://googlechromereleases.blogspot.com/2015/01/stable-update.html
Discussion:
Google Chrome bug is:
https://code.google.com/p/chromium/issues/detail?id=430353
However, the bug is currently not public. However, the following commit can be identified using the bug id:
https://chromium.googlesource.com/chromium/deps/icu/+/3af4ce5982311035e5f36803d547c0befa576c8c
It covers two Chrome bugs, the other one is associated with CVE-2014-7926 also fixed in Chrome 40.0.2214.91.
The commit references ICU upstream bugs, which are also currently non-public. ICU bug and commit links follow:
http://bugs.ic
http://advisories.mageia.org/MGASA-2015-0047.htmlhttp://bugs.icu-project.org/trac/ticket/11369http://googlechromereleases.blogspot.com/2015/01/stable-update.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-03/msg00005.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0093.htmlhttp://secunia.com/advisories/62383http://secunia.com/advisories/62575http://secunia.com/advisories/62665http://security.gentoo.org/glsa/glsa-201502-13.xmlhttp://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.htmlhttp://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.htmlhttp://www.securityfocus.com/bid/72288http://www.securitytracker.com/id/1031623http://www.ubuntu.com/usn/USN-2476-1https://chromium.googlesource.com/chromium/deps/icu52/+/3af4ce5982311035e5f36803d547c0befa576c8chttps://chromium.googlesource.com/chromium/deps/icu52/+/6242e2fbb36f486f2c0addd1c3cef67fc4ed33fbhttps://code.google.com/p/chromium/issues/detail?id=422824https://codereview.chromium.org/726973003https://security.gentoo.org/glsa/201503-06https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.htmlhttp://advisories.mageia.org/MGASA-2015-0047.htmlhttp://bugs.icu-project.org/trac/ticket/11369http://googlechromereleases.blogspot.com/2015/01/stable-update.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-03/msg00005.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0093.htmlhttp://secunia.com/advisories/62383http://secunia.com/advisories/62575http://secunia.com/advisories/62665http://security.gentoo.org/glsa/glsa-201502-13.xmlhttp://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.htmlhttp://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.htmlhttp://www.securityfocus.com/bid/72288http://www.securitytracker.com/id/1031623http://www.ubuntu.com/usn/USN-2476-1https://chromium.googlesource.com/chromium/deps/icu52/+/3af4ce5982311035e5f36803d547c0befa576c8chttps://chromium.googlesource.com/chromium/deps/icu52/+/6242e2fbb36f486f2c0addd1c3cef67fc4ed33fbhttps://code.google.com/p/chromium/issues/detail?id=422824https://codereview.chromium.org/726973003https://security.gentoo.org/glsa/201503-06https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html
2015-01-22
Published