CVE-2015-1288
published 2015-07-23CVE-2015-1288: The Spellcheck API implementation in Google Chrome before 44.0.2403.89 does not use an HTTPS session for downloading a Hunspell dictionary, which allows…
PriorityP425medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
1.08%
61.6th percentile
The Spellcheck API implementation in Google Chrome before 44.0.2403.89 does not use an HTTPS session for downloading a Hunspell dictionary, which allows man-in-the-middle attackers to deliver incorrect spelling suggestions or possibly have unspecified other impact via a crafted file, a related issue to CVE-2015-1263.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| chrome | <= 43.0.2357.134 | — | |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| redhat | enterprise_linux_desktop_supplementary | — | — |
| redhat | enterprise_linux_server_supplementary | — | — |
| redhat | enterprise_linux_server_supplementary_eus | — | — |
| redhat | enterprise_linux_workstation_supplementary | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv4.3MEDIUM
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
chromium-browser: Spell checking dictionaries fetched over HTTP in unspecified
vendor_redhat·2015-07-21·CVSS 4.3
CVE-2015-1288 [MEDIUM] chromium-browser: Spell checking dictionaries fetched over HTTP in unspecified
chromium-browser: Spell checking dictionaries fetched over HTTP in unspecified
The Spellcheck API implementation in Google Chrome before 44.0.2403.89 does not use an HTTPS session for downloading a Hunspell dictionary, which allows man-in-the-middle attackers to deliver incorrect spelling suggestions or possibly have unspecified other impact via a crafted file, a related issue to CVE-2015-1263.
GHSA
GHSA-gg9q-x7v7-56vv: The Spellcheck API implementation in Google Chrome before 44
ghsa_unreviewed·2022-05-14·CVSS 4.3
CVE-2015-1288 [MEDIUM] GHSA-gg9q-x7v7-56vv: The Spellcheck API implementation in Google Chrome before 44
The Spellcheck API implementation in Google Chrome before 44.0.2403.89 does not use an HTTPS session for downloading a Hunspell dictionary, which allows man-in-the-middle attackers to deliver incorrect spelling suggestions or possibly have unspecified other impact via a crafted file, a related issue to CVE-2015-1263.
OSV
CVE-2015-1288: The Spellcheck API implementation in Google Chrome before 44
osv·2015-07-23·CVSS 4.3
CVE-2015-1288 [MEDIUM] CVE-2015-1288: The Spellcheck API implementation in Google Chrome before 44
The Spellcheck API implementation in Google Chrome before 44.0.2403.89 does not use an HTTPS session for downloading a Hunspell dictionary, which allows man-in-the-middle attackers to deliver incorrect spelling suggestions or possibly have unspecified other impact via a crafted file, a related issue to CVE-2015-1263.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-8540 libpng: underflow read in png_check_keyword()
bugzilla·2015-12-14·CVSS 8.8
CVE-2015-8540 [HIGH] CVE-2015-8540 libpng: underflow read in png_check_keyword()
CVE-2015-8540 libpng: underflow read in png_check_keyword()
An underflow read was found in png_check_keyword in pngwutil.c in libpng-1.2.54:
If the data of "key" is only ' ' (0x20), it will read a byte before the buffer in line 1288.
This issue impacts upstream versions 1.2.55, 1.0.65, 1.4.18, and 1.5.25 of libpng.
An attacker could possibly use this flaw to cause an out-of-bounds read by tricking an unsuspecting user into processing a specially crafted PNG image.
CVE assignment:
http://seclists.org/oss-sec/2015/q4/469
Upstream issue:
http://sourceforge.net/p/libpng/bugs/244/
Upstream patch:
http://sourceforge.net/p/libpng/code/ci/d9006f683c641793252d92254a75ae9b815b42ed/
Discussion:
Created libpng tracking bugs for this issue:
Affects: fedora-all [bug 1291314]
---
Created l
Bugzilla
CVE-2015-1288 chromium-browser: Spell checking dictionaries fetched over HTTP in unspecified
bugzilla·2015-07-22·CVSS 6.8
CVE-2015-1288 [MEDIUM] CVE-2015-1288 chromium-browser: Spell checking dictionaries fetched over HTTP in unspecified
CVE-2015-1288 chromium-browser: Spell checking dictionaries fetched over HTTP in unspecified
It was reported that spell checking dictionaries were fetched over http before
Chrome 44.0.2403.89.
Upstream bug: https://code.google.com/p/chromium/issues/detail?id=479162
External References:
http://googlechromereleases.blogspot.com/2015/07/stable-channel-update_21.html
Discussion:
This issue has been addressed in the following products:
Supplementary for Red Hat Enterprise Linux 6
Via RHSA-2015:1499 https://rhn.redhat.com/errata/RHSA-2015-1499.html
http://googlechromereleases.blogspot.com/2015/07/stable-channel-update_21.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-07/msg00038.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1499.htmlhttp://www.debian.org/security/2015/dsa-3315http://www.securityfocus.com/bid/75973http://www.securitytracker.com/id/1033031https://code.google.com/p/chromium/issues/detail?id=479162https://codereview.chromium.org/1056103005https://security.gentoo.org/glsa/201603-09http://googlechromereleases.blogspot.com/2015/07/stable-channel-update_21.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-07/msg00038.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1499.htmlhttp://www.debian.org/security/2015/dsa-3315http://www.securityfocus.com/bid/75973http://www.securitytracker.com/id/1033031https://code.google.com/p/chromium/issues/detail?id=479162https://codereview.chromium.org/1056103005https://security.gentoo.org/glsa/201603-09
2015-07-23
Published