CVE-2015-1270
published 2015-07-23CVE-2015-1270: The ucnv_io_getConverterName function in common/ucnv_io.cpp in International Components for Unicode (ICU), as used in Google Chrome before 44.0.2403.89…
PriorityP426medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
2.73%
84.6th percentile
The ucnv_io_getConverterName function in common/ucnv_io.cpp in International Components for Unicode (ICU), as used in Google Chrome before 44.0.2403.89, mishandles converter names with initial x- substrings, which allows remote attackers to cause a denial of service (read of uninitialized memory) or possibly have unspecified other impact via a crafted file.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | icu | < icu 55.1-5 (bookworm) | icu 55.1-5 (bookworm) |
| chrome | <= 43.0.2357.134 | — | |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| oracle | solaris | — | — |
| redhat | enterprise_linux_desktop_supplementary | — | — |
| redhat | enterprise_linux_server_supplementary | — | — |
| redhat | enterprise_linux_server_supplementary_eus | — | — |
| redhat | enterprise_linux_workstation_supplementary | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv6.8MEDIUM
vendor_debian6.8MEDIUM
vendor_redhat6.8MEDIUM
vendor_ubuntu6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-cjg8-m6hh-w76f: The ucnv_io_getConverterName function in common/ucnv_io
ghsa_unreviewed·2022-05-14
CVE-2015-1270 [MEDIUM] GHSA-cjg8-m6hh-w76f: The ucnv_io_getConverterName function in common/ucnv_io
The ucnv_io_getConverterName function in common/ucnv_io.cpp in International Components for Unicode (ICU), as used in Google Chrome before 44.0.2403.89, mishandles converter names with initial x- substrings, which allows remote attackers to cause a denial of service (read of uninitialized memory) or possibly have unspecified other impact via a crafted file.
OSV
icu vulnerabilities
osv·2015-09-16·CVSS 6.8
CVE-2015-1270 [MEDIUM] icu vulnerabilities
icu vulnerabilities
Atte Kettunen discovered that ICU incorrectly handled certain converter
names. If an application using ICU processed crafted data, a remote
attacker could possibly cause it to crash. (CVE-2015-1270)
It was discovered that ICU incorrectly handled certain memory operations
when processing data. If an application using ICU processed crafted data,
a remote attacker could possibly cause it to crash or potentially execute
arbitrary code with the privileges of the user invoking the program.
(CVE-2015-2632, CVE-2015-4760)
OSV
oxide-qt vulnerabilities
osv·2015-08-04·CVSS 6.8
CVE-2015-1270 [MEDIUM] oxide-qt vulnerabilities
oxide-qt vulnerabilities
An uninitialized value issue was discovered in ICU. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit this to cause a denial of service. (CVE-2015-1270)
A use-after-free was discovered in the GPU process implementation in
Chromium. If a user were tricked in to opening a specially crafted
website, an attacker could potentially exploit this to cause a denial of
service via application crash, or execute arbitrary code with the
privileges of the user invoking the program. (CVE-2015-1272)
A use-after-free was discovered in the IndexedDB implementation in
Chromium. If a user were tricked in to opening a specially crafted
website, an attacker could potentially exploit this to cause a denial of
service via applicatio
OSV
CVE-2015-1270: The ucnv_io_getConverterName function in common/ucnv_io
osv·2015-07-23·CVSS 6.8
CVE-2015-1270 [MEDIUM] CVE-2015-1270: The ucnv_io_getConverterName function in common/ucnv_io
The ucnv_io_getConverterName function in common/ucnv_io.cpp in International Components for Unicode (ICU), as used in Google Chrome before 44.0.2403.89, mishandles converter names with initial x- substrings, which allows remote attackers to cause a denial of service (read of uninitialized memory) or possibly have unspecified other impact via a crafted file.
Ubuntu
ICU vulnerabilities
vendor_ubuntu·2015-09-16·CVSS 6.8
CVE-2015-1270 [MEDIUM] ICU vulnerabilities
Title: ICU vulnerabilities
Summary: Several security issues were fixed in ICU.
Atte Kettunen discovered that ICU incorrectly handled certain converter
names. If an application using ICU processed crafted data, a remote
attacker could possibly cause it to crash. (CVE-2015-1270)
It was discovered that ICU incorrectly handled certain memory operations
when processing data. If an application using ICU processed crafted data,
a remote attacker could possibly cause it to crash or potentially execute
arbitrary code with the privileges of the user invoking the program.
(CVE-2015-2632, CVE-2015-4760)
Instructions: In general, a standard system update will make all the necessary changes.
Ubuntu
Oxide vulnerabilities
vendor_ubuntu·2015-08-04·CVSS 6.8
CVE-2015-1270 [MEDIUM] Oxide vulnerabilities
Title: Oxide vulnerabilities
Summary: Several security issues were fixed in Oxide.
An uninitialized value issue was discovered in ICU. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit this to cause a denial of service. (CVE-2015-1270)
A use-after-free was discovered in the GPU process implementation in
Chromium. If a user were tricked in to opening a specially crafted
website, an attacker could potentially exploit this to cause a denial of
service via application crash, or execute arbitrary code with the
privileges of the user invoking the program. (CVE-2015-1272)
A use-after-free was discovered in the IndexedDB implementation in
Chromium. If a user were tricked in to opening a specially crafted
website, an attacker could potential
Red Hat
ICU: Uninitialized memory read fixed in Chrome 44.0.2403.89
vendor_redhat·2015-07-21·CVSS 6.8
CVE-2015-1270 [MEDIUM] ICU: Uninitialized memory read fixed in Chrome 44.0.2403.89
ICU: Uninitialized memory read fixed in Chrome 44.0.2403.89
The ucnv_io_getConverterName function in common/ucnv_io.cpp in International Components for Unicode (ICU), as used in Google Chrome before 44.0.2403.89, mishandles converter names with initial x- substrings, which allows remote attackers to cause a denial of service (read of uninitialized memory) or possibly have unspecified other impact via a crafted file.
Statement: This issue did not affect the versions of icu as shipped with Red Hat Enterprise Linux 5 and 6. This issue affects the versions of icu as shipped with Red Hat Enterprise Linux 7. Red Hat Product Security has rated this issue as having Low security impact.
Package: icu (Red Hat Enterprise Linux 5) - Not affected
Package: icu (Red Hat Enterprise Linux 6) - Not affe
Debian
CVE-2015-1270: icu - The ucnv_io_getConverterName function in common/ucnv_io.cpp in International Com...
vendor_debian·2015·CVSS 6.8
CVE-2015-1270 [MEDIUM] CVE-2015-1270: icu - The ucnv_io_getConverterName function in common/ucnv_io.cpp in International Com...
The ucnv_io_getConverterName function in common/ucnv_io.cpp in International Components for Unicode (ICU), as used in Google Chrome before 44.0.2403.89, mishandles converter names with initial x- substrings, which allows remote attackers to cause a denial of service (read of uninitialized memory) or possibly have unspecified other impact via a crafted file.
Scope: local
bookworm: resolved (fixed in 55.1-5)
bullseye: resolved (fixed in 55.1-5)
forky: resolved (fixed in 55.1-5)
sid: resolved (fixed in 55.1-5)
trixie: resolved (fixed in 55.1-5)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-1270 mingw-icu: chromium-browser: Uninitialized memory read in ICU. [epel-7]
bugzilla·2015-07-28·CVSS 6.8
CVE-2015-1270 [MEDIUM] CVE-2015-1270 mingw-icu: chromium-browser: Uninitialized memory read in ICU. [epel-7]
CVE-2015-1270 mingw-icu: chromium-browser: Uninitialized memory read in ICU. [epel-7]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora EPEL.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
epel-7 tracking bug for mingw-icu: see bloc
Bugzilla
CVE-2015-1270 icu: chromium-browser: Uninitialized memory read in ICU. [fedora-all]
bugzilla·2015-07-28·CVSS 6.8
CVE-2015-1270 [MEDIUM] CVE-2015-1270 icu: chromium-browser: Uninitialized memory read in ICU. [fedora-all]
CVE-2015-1270 icu: chromium-browser: Uninitialized memory read in ICU. [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versio
Bugzilla
CVE-2015-1270 ICU: Uninitialized memory read fixed in Chrome 44.0.2403.89
bugzilla·2015-07-22·CVSS 6.8
CVE-2015-1270 [MEDIUM] CVE-2015-1270 ICU: Uninitialized memory read fixed in Chrome 44.0.2403.89
CVE-2015-1270 ICU: Uninitialized memory read fixed in Chrome 44.0.2403.89
An unspecified uninitialized memory read flaw was found in the ICU component of the Chromium browser.
Upstream bug: https://code.google.com/p/chromium/issues/detail?id=444573
External References:
http://googlechromereleases.blogspot.com/2015/07/stable-channel-update_21.html
Discussion:
This issue has been addressed in the following products:
Supplementary for Red Hat Enterprise Linux 6
Via RHSA-2015:1499 https://rhn.redhat.com/errata/RHSA-2015-1499.html
---
Upstream ICU bug at:
http://bugs.icu-project.org/trac/ticket/11696
Commit:
http://bugs.icu-project.org/trac/changeset/37486/
---
Statement:
This issue did not affect the versions of icu as shipped with Red Hat Enterprise Linux 5 and 6. This issue aff
http://googlechromereleases.blogspot.com/2015/07/stable-channel-update_21.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-07/msg00038.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1499.htmlhttp://www.debian.org/security/2015/dsa-3315http://www.debian.org/security/2015/dsa-3360http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.htmlhttp://www.securityfocus.com/bid/75973http://www.securitytracker.com/id/1033031http://www.ubuntu.com/usn/USN-2740-1https://chromium.googlesource.com/chromium/deps/icu/+/f1ad7f9ba957571dc692ea3e187612c685615e19https://code.google.com/p/chromium/issues/detail?id=444573https://codereview.chromium.org/1157143002/https://security.gentoo.org/glsa/201603-09http://googlechromereleases.blogspot.com/2015/07/stable-channel-update_21.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-07/msg00038.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1499.htmlhttp://www.debian.org/security/2015/dsa-3315http://www.debian.org/security/2015/dsa-3360http://www.oracle.com/technetwork/topics/security/bulletinoct2015-2511968.htmlhttp://www.securityfocus.com/bid/75973http://www.securitytracker.com/id/1033031http://www.ubuntu.com/usn/USN-2740-1https://chromium.googlesource.com/chromium/deps/icu/+/f1ad7f9ba957571dc692ea3e187612c685615e19https://code.google.com/p/chromium/issues/detail?id=444573https://codereview.chromium.org/1157143002/https://security.gentoo.org/glsa/201603-09
2015-07-23
Published