CVE-2016-0373
published 2018-08-30CVE-2016-0373: IBM UrbanCode Deploy 6.0 through 6.2.2.1 could allow an authenticated user to read sensitive information due to UCD REST endpoints not properly authorizing…
PriorityP419medium4.3CVSS 3.0
AVNACLPRLUINSUCLINAN
EPSS
0.79%
51.9th percentile
IBM UrbanCode Deploy 6.0 through 6.2.2.1 could allow an authenticated user to read sensitive information due to UCD REST endpoints not properly authorizing users when determining who can read data. IBM X-Force ID: 112119.
Affected
43 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
| ibm | urbancode_deploy | — | — |
CVSS provenance
nvdv3.04.3MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-1958 Mozilla: Displayed page address can be overridden (MFSA 2016-21)
bugzilla·2016-03-08·CVSS 4.3
CVE-2016-1958 [MEDIUM] CVE-2016-1958 Mozilla: Displayed page address can be overridden (MFSA 2016-21)
CVE-2016-1958 Mozilla: Displayed page address can be overridden (MFSA 2016-21)
Security researcher Abdulrahman Alqabandi reported an issue where an attacker can load an arbitrary web page but the addressbar's displayed URL will be blank or filled with page defined content. This can be used to obfuscate which page is currently loaded and allows for an attacker to spoof an existing page without the malicious page's address being displayed correctly.
External Reference:
https://www.mozilla.org/security/announce/2016/mfsa2016-21.html
Acknowledgements:
Name: the Mozilla project
Upstream: Abdulrahman Alqabandi
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Red Hat Enterprise Linux 7
Red Hat Enterprise Linux 5
Via RHSA-2016:0373 https://
Bugzilla
CVE-2016-1974 Mozilla: Out-of-bounds read in HTML parser following a failed allocation (MFSA 2016-34)
bugzilla·2016-03-08·CVSS 8.8
CVE-2016-1974 [HIGH] CVE-2016-1974 Mozilla: Out-of-bounds read in HTML parser following a failed allocation (MFSA 2016-34)
CVE-2016-1974 Mozilla: Out-of-bounds read in HTML parser following a failed allocation (MFSA 2016-34)
Security researcher Ronald Crane reported an out-of-bounds read following a failed allocation in the HTML parser while working with unicode strings. This can also affect the parsing of XML and SVG format data. This leads to a potentially exploitable crash.
External Reference:
https://www.mozilla.org/security/announce/2016/mfsa2016-34.html
Acknowledgements:
Name: the Mozilla project
Upstream: Ronald Crane
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Red Hat Enterprise Linux 7
Red Hat Enterprise Linux 5
Via RHSA-2016:0373 https://rhn.redhat.com/errata/RHSA-2016-0373.html
---
This issue has been addressed in the following products
Bugzilla
CVE-2016-1957 Mozilla: Memory leak in libstagefright when deleting an array during MP4 processing (MFSA 2016-20)
bugzilla·2016-03-08·CVSS 4.3
CVE-2016-1957 [MEDIUM] CVE-2016-1957 Mozilla: Memory leak in libstagefright when deleting an array during MP4 processing (MFSA 2016-20)
CVE-2016-1957 Mozilla: Memory leak in libstagefright when deleting an array during MP4 processing (MFSA 2016-20)
Security researchers Jose Martinez and Romina Santillan reported a memory leak in the libstagefright library when array destruction occurs during MPEG4 video file processing.
External Reference:
https://www.mozilla.org/security/announce/2016/mfsa2016-20.html
Acknowledgements:
Name: the Mozilla project
Upstream: Jose Martinez, Romina Santillan
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Red Hat Enterprise Linux 7
Red Hat Enterprise Linux 5
Via RHSA-2016:0373 https://rhn.redhat.com/errata/RHSA-2016-0373.html
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Red Hat Enterprise Li
Bugzilla
CVE-2016-1964 Mozilla: Use-after-free during XML transformations (MFSA 2016-27)
bugzilla·2016-03-08·CVSS 8.8
CVE-2016-1964 [HIGH] CVE-2016-1964 Mozilla: Use-after-free during XML transformations (MFSA 2016-27)
CVE-2016-1964 Mozilla: Use-after-free during XML transformations (MFSA 2016-27)
Security researcher Nicolas Grégoire used the Address Sanitizer to find a use-after-free during XML transformation operations. This results in a potentially exploitable crash triggerable by web content.
External Reference:
https://www.mozilla.org/security/announce/2016/mfsa2016-27.html
Acknowledgements:
Name: the Mozilla project
Upstream: Nicolas Grégoire
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Red Hat Enterprise Linux 7
Red Hat Enterprise Linux 5
Via RHSA-2016:0373 https://rhn.redhat.com/errata/RHSA-2016-0373.html
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Red Hat Enterprise Linux 5
Red Hat Enter
Bugzilla
CVE-2016-1960 Mozilla: Use-after-free in HTML5 string parser (MFSA 2016-23)
bugzilla·2016-03-08·CVSS 8.8
CVE-2016-1960 [HIGH] CVE-2016-1960 Mozilla: Use-after-free in HTML5 string parser (MFSA 2016-23)
CVE-2016-1960 Mozilla: Use-after-free in HTML5 string parser (MFSA 2016-23)
Security researcher ca0nguyen, working with HP's Zero Day Initiative, reported a use-after-free issue in the HTML5 string parser when parsing a particular set of table-related tags in a foreign fragment context such as SVG. This results in a potentially exploitable crash.
External Reference:
https://www.mozilla.org/security/announce/2016/mfsa2016-23.html
Acknowledgements:
Name: the Mozilla project
Upstream: ca0nguyen
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Red Hat Enterprise Linux 7
Red Hat Enterprise Linux 5
Via RHSA-2016:0373 https://rhn.redhat.com/errata/RHSA-2016-0373.html
---
This issue has been addressed in the following products:
Red Hat E
Bugzilla
CVE-2016-1973 Mozilla: Use-after-free in GetStaticInstance in WebRTC (MFSA 2016-33)
bugzilla·2016-03-08·CVSS 8.8
CVE-2016-1973 [HIGH] CVE-2016-1973 Mozilla: Use-after-free in GetStaticInstance in WebRTC (MFSA 2016-33)
CVE-2016-1973 Mozilla: Use-after-free in GetStaticInstance in WebRTC (MFSA 2016-33)
Security researcher Ronald Crane reported a race condition in GetStaticInstance in WebRTC which results in a use-after-free. This could result in a potentially exploitable crash. This issue was found through code inspection and does not have clear mechanism to be exploited through web content but is vulnerable if a mechanism can be found to trigger it.
External Reference:
https://www.mozilla.org/security/announce/2016/mfsa2016-33.html
Acknowledgements:
Name: the Mozilla project
Upstream: Ronald Crane
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Red Hat Enterprise Linux 7
Red Hat Enterprise Linux 5
Via RHSA-2016:0373 https://rhn.redhat.com/errata/
Bugzilla
CVE-2016-1961 Mozilla: Use-after-free in SetBody (MFSA 2016-24)
bugzilla·2016-03-08·CVSS 8.8
CVE-2016-1961 [HIGH] CVE-2016-1961 Mozilla: Use-after-free in SetBody (MFSA 2016-24)
CVE-2016-1961 Mozilla: Use-after-free in SetBody (MFSA 2016-24)
Security researcher lokihardt, working with HP's Zero Day Initiative, reported a use-after-free issue in the SetBody function of HTMLDocument. This results in a potentially exploitable crash.
External Reference:
https://www.mozilla.org/security/announce/2016/mfsa2016-24.html
Acknowledgements:
Name: the Mozilla project
Upstream: lokihardt
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Red Hat Enterprise Linux 7
Red Hat Enterprise Linux 5
Via RHSA-2016:0373 https://rhn.redhat.com/errata/RHSA-2016-0373.html
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Red Hat Enterprise Linux 5
Red Hat Enterprise Linux 7
Via RHSA-2016:0460 h
Bugzilla
CVE-2016-1962 Mozilla: Use-after-free when using multiple WebRTC data channels (MFSA 2016-25)
bugzilla·2016-03-08·CVSS 9.8
CVE-2016-1962 [CRITICAL] CVE-2016-1962 Mozilla: Use-after-free when using multiple WebRTC data channels (MFSA 2016-25)
CVE-2016-1962 Mozilla: Use-after-free when using multiple WebRTC data channels (MFSA 2016-25)
Security researcher Dominique Hazaël-Massieux reported a use-after-free issue when using multiple WebRTC data channel connections. This causes a potentially exploitable crash when a data channel connection is freed from within a call through it.
External Reference:
https://www.mozilla.org/security/announce/2016/mfsa2016-25.html
Acknowledgements:
Name: the Mozilla project
Upstream: Dominique Hazaël-Massieux
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6
Red Hat Enterprise Linux 7
Red Hat Enterprise Linux 5
Via RHSA-2016:0373 https://rhn.redhat.com/errata/RHSA-2016-0373.html
2018-08-30
Published