CVE-2015-8320
published 2015-11-23CVE-2015-8320: Apache Cordova-Android before 3.7.0 improperly generates random values for BridgeSecret data, which makes it easier for attackers to conduct bridge hijacking…
PriorityP424medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
4.44%
90.3th percentile
Apache Cordova-Android before 3.7.0 improperly generates random values for BridgeSecret data, which makes it easier for attackers to conduct bridge hijacking attacks by predicting a value.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | cordova | <= 3.6.4 | — |
| debian | linux | < linux 4.2.1-1 (bookworm) | linux 4.2.1-1 (bookworm) |
| linux | linux_kernel | <= 4.2.3 | — |
| linux | linux_kernel | >= 0 < 4.2.1-1 | 4.2.1-1 |
| linux | linux_kernel | >= 0 < 4.2.1-1 | 4.2.1-1 |
| linux | linux_kernel | >= 0 < 4.2.1-1 | 4.2.1-1 |
| linux | linux_kernel | >= 0 < 4.2.1-1 | 4.2.1-1 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv4.9MEDIUM
vendor_debian4.9MEDIUM
vendor_redhat4.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-v3mg-r9jg-vfg4: drivers/usb/serial/whiteheat
ghsa_unreviewed·2022-05-17·CVSS 5.0
CVE-2015-5257 [MEDIUM] GHSA-v3mg-r9jg-vfg4: drivers/usb/serial/whiteheat
drivers/usb/serial/whiteheat.c in the Linux kernel before 4.2.4 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact via a crafted USB device. NOTE: this ID was incorrectly used for an Apache Cordova issue that has the correct ID of CVE-2015-8320.
GHSA
GHSA-87x6-r7ff-7gv7: Apache Cordova-Android before 3
ghsa_unreviewed·2022-05-14
CVE-2015-8320 [MEDIUM] GHSA-87x6-r7ff-7gv7: Apache Cordova-Android before 3
Apache Cordova-Android before 3.7.0 improperly generates random values for BridgeSecret data, which makes it easier for attackers to conduct bridge hijacking attacks by predicting a value.
OSV
CVE-2015-5257: drivers/usb/serial/whiteheat
osv·2015-11-16·CVSS 4.9
CVE-2015-5257 [MEDIUM] CVE-2015-5257: drivers/usb/serial/whiteheat
drivers/usb/serial/whiteheat.c in the Linux kernel before 4.2.4 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact via a crafted USB device. NOTE: this ID was incorrectly used for an Apache Cordova issue that has the correct ID of CVE-2015-8320.
Red Hat
kernel: NULL pointer dereference in USB WhiteHEAT serial driver
vendor_redhat·2015-09-22·CVSS 4.9
CVE-2015-5257 [MEDIUM] CWE-476 kernel: NULL pointer dereference in USB WhiteHEAT serial driver
kernel: NULL pointer dereference in USB WhiteHEAT serial driver
drivers/usb/serial/whiteheat.c in the Linux kernel before 4.2.4 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact via a crafted USB device. NOTE: this ID was incorrectly used for an Apache Cordova issue that has the correct ID of CVE-2015-8320.
A denial of service vulnerability was found in the WhiteHEAT USB Serial Driver (whiteheat_attach function in drivers/usb/serial/whiteheat.c). In the driver, the COMMAND_PORT variable was hard coded and set to 4 (5th element). The driver assumed that the number of ports would always be 5 and used port number 5 as the command port. However, when using a USB device in which the number of ports
Debian
CVE-2015-5257: linux - drivers/usb/serial/whiteheat.c in the Linux kernel before 4.2.4 allows physicall...
vendor_debian·2015·CVSS 4.9
CVE-2015-5257 [MEDIUM] CVE-2015-5257: linux - drivers/usb/serial/whiteheat.c in the Linux kernel before 4.2.4 allows physicall...
drivers/usb/serial/whiteheat.c in the Linux kernel before 4.2.4 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and OOPS) or possibly have unspecified other impact via a crafted USB device. NOTE: this ID was incorrectly used for an Apache Cordova issue that has the correct ID of CVE-2015-8320.
Scope: local
bookworm: resolved (fixed in 4.2.1-1)
bullseye: resolved (fixed in 4.2.1-1)
forky: resolved (fixed in 4.2.1-1)
sid: resolved (fixed in 4.2.1-1)
trixie: resolved (fixed in 4.2.1-1)
No detection rules found.
No public exploits indexed.
http://packetstormsecurity.com/files/134496/Apache-Cordova-Android-3.6.4-BridgeSecret-Weak-Randomization.htmlhttp://www.securityfocus.com/archive/1/536945/100/0/threadedhttp://www.securityfocus.com/bid/77679https://cordova.apache.org/announcements/2015/11/20/security.htmlhttp://packetstormsecurity.com/files/134496/Apache-Cordova-Android-3.6.4-BridgeSecret-Weak-Randomization.htmlhttp://www.securityfocus.com/archive/1/536945/100/0/threadedhttp://www.securityfocus.com/bid/77679https://cordova.apache.org/announcements/2015/11/20/security.html
2015-11-23
Published