CVE-2016-0254
published 2017-06-07CVE-2016-0254: IBM Cognos Business Intelligence 10.1 and 10.2 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML…
PriorityP433medium6.5CVSS 3.0
AVNACLPRLUINSUCNINAH
EPSS
1.90%
77.2th percentile
IBM Cognos Business Intelligence 10.1 and 10.2 is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote authenticated attacker could exploit this vulnerability to consume all available CPU resources and cause a denial of service. IBM X-Force ID: 110563.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | cognos_business_intelligence | — | — |
| ibm | cognos_business_intelligence | — | — |
| ibm | cognos_business_intelligence | — | — |
| ibm | cognos_business_intelligence | — | — |
| ibm | cognos_business_intelligence | — | — |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
nvdv2.06.8MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-9036 CVE-2016-9037 tarantool: Multiple DoS vulnerabilities
bugzilla·2016-12-21·CVSS 7.5
CVE-2016-9036 [HIGH] CVE-2016-9036 CVE-2016-9037 tarantool: Multiple DoS vulnerabilities
CVE-2016-9036 CVE-2016-9037 tarantool: Multiple DoS vulnerabilities
Talos released two advisories about vulnerabilities in tarantool.
CVE-2016-9036 - Tarantool Msgpuck mp_check Denial Of Service Vulnerability
http://www.talosintelligence.com/reports/TALOS-2016-0254/
CVE-2016-9037 - Tarantool Key-type Denial Of Service Vulnerability
http://www.talosintelligence.com/reports/TALOS-2016-0255/
Discussion:
Created tarantool tracking bugs for this issue:
Affects: fedora-all [bug 1406682]
Affects: epel-7 [bug 1406683]
---
This CVE Bugzilla entry is for community support informational purposes only as it does not affect a package in a commercially supported Red Hat product. Refer to the dependent bugs for status of those individual community products.
Bugzilla
CVE-2016-9577 spice: Buffer overflow in main_channel_alloc_msg_rcv_buf when reading large messages
bugzilla·2016-12-05·CVSS 7.5
CVE-2016-9577 [HIGH] CVE-2016-9577 spice: Buffer overflow in main_channel_alloc_msg_rcv_buf when reading large messages
CVE-2016-9577 spice: Buffer overflow in main_channel_alloc_msg_rcv_buf when reading large messages
A buffer overflow vulnerability in main_channel_alloc_msg_rcv_buf was found that occurs when reading large messages due to missing buffer size check.
Product bug:
https://bugzilla.redhat.com/show_bug.cgi?id=1401038
Discussion:
Acknowledgments:
Name: Frediano Ziglio (Red Hat)
---
This bug is fixed in spice-0.12.4-20.el7_3.
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2017:0254 https://rhn.redhat.com/errata/RHSA-2017-0254.html
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Via RHSA-2017:0253 https://rhn.redhat.com/errata/RHSA-2017-0253.html
---
Shouldn't this bug been closed?
---
(In
http://www.ibm.com/support/docview.wss?uid=swg22004036http://www.securityfocus.com/bid/98971https://exchange.xforce.ibmcloud.com/vulnerabilities/110563http://www.ibm.com/support/docview.wss?uid=swg22004036http://www.securityfocus.com/bid/98971https://exchange.xforce.ibmcloud.com/vulnerabilities/110563
2017-06-07
Published