CVE-2016-2971
published 2017-08-29CVE-2016-2971: IBM Sametime Media Services 8.5.2 and 9.0 can disclose sensitive information in stack trace error logs that could aid an attacker in future attacks. IBM…
PriorityP424medium5.3CVSS 3.0
AVNACLPRNUINSUCLINAN
EPSS
1.33%
67.9th percentile
IBM Sametime Media Services 8.5.2 and 9.0 can disclose sensitive information in stack trace error logs that could aid an attacker in future attacks. IBM X-Force ID: 113898.
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | sametime | — | — |
| ibm | sametime | — | — |
| ibm | sametime | — | — |
| ibm | sametime | — | — |
| ibm | sametime | — | — |
| ibm | sametime | — | — |
| ibm | sametime | — | — |
CVSS provenance
nvdv3.05.3MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv4.6MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-q8jr-cpqv-gjrw: IBM Sametime Media Services 8
ghsa_unreviewed·2022-05-17
CVE-2016-2971 [MEDIUM] CWE-200 GHSA-q8jr-cpqv-gjrw: IBM Sametime Media Services 8
IBM Sametime Media Services 8.5.2 and 9.0 can disclose sensitive information in stack trace error logs that could aid an attacker in future attacks. IBM X-Force ID: 113898.
OSV
linux-lts-wily vulnerabilities
osv·2016-05-09·CVSS 4.6
CVE-2015-7515 linux-lts-wily vulnerabilities
linux-lts-wily vulnerabilities
USN-2971-1 fixed vulnerabilities in the Linux kernel for Ubuntu 15.10.
This update provides the corresponding updates for the Linux Hardware
Enablement (HWE) kernel from Ubuntu 15.10 for Ubuntu 14.04 LTS.
Ralf Spenneberg discovered that the Aiptek Tablet USB device driver in the
Linux kernel did not properly validate the endpoints reported by the
device. An attacker with physical access could cause a denial of service
(system crash). (CVE-2015-7515)
Zach Riggle discovered that the Linux kernel's list poison feature did not
take into account the mmap_min_addr value. A local attacker could use this
to bypass the kernel's poison-pointer protection mechanism while attempting
to exploit an existing kernel vulnerability. (CVE-2016-0821)
Ralf Spenneberg discover
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: Adobe Acrobat Reader DC jpeg Decoder Vulnerability
blogs_talos·2017-01-20·CVSS 7.8
CVE-2017-2971 [HIGH] Vulnerability Spotlight: Adobe Acrobat Reader DC jpeg Decoder Vulnerability
Discovered by Aleksandar Nikolic of Cisco Talos
### Overview
Talos is disclosing TALOS-2016-0259 / CVE-2017-2971 an uninitialized memory vulnerability in Adobe Acrobat Reader DC. Adobe Acrobat Reader is one of the largest and well known PDF readers available today.
This particular vulnerability is associated with the JPEG Decoder functionality embedded in the application. A specially crafted PDF document containing a JPEG can be used to trigger this vulnerability which results in a heap-based buffer overflow which can be leveraged to achieve remote code execution. This issue has been resolved in the most recent patch provided by Adobe. The full details surrounding the vulnerability are available here.
### Coverage
The following Snort Rules will detect exploitation attempts. Note that
Talos
Vulnerability Spotlight: Adobe Acrobat Reader DC jpeg Decoder Vulnerability
blogs_talos·2017-01-20·CVSS 7.8
CVE-2017-2971 [HIGH] Vulnerability Spotlight: Adobe Acrobat Reader DC jpeg Decoder Vulnerability
## Vulnerability Spotlight: Adobe Acrobat Reader DC jpeg Decoder Vulnerability
Discovered by Aleksandar Nikolic of Cisco Talos
## Overview
Talos is disclosing TALOS-2016-0259 / CVE-2017-2971 an uninitialized memory vulnerability in Adobe Acrobat Reader DC. Adobe Acrobat Reader is one of the largest and well known PDF readers available today.
This particular vulnerability is associated with the JPEG Decoder functionality embedded in the application. A specially crafted PDF document containing a JPEG can be used to trigger this vulnerability which results in a heap-based buffer overflow which can be leveraged to achieve remote code execution. This issue has been resolved in the most recent patch provided by Adobe. The full details surrounding the vulnerability are available here .
## Co
http://www.ibm.com/support/docview.wss?uid=swg22006439http://www.securityfocus.com/bid/100599http://www.securitytracker.com/id/1039231https://exchange.xforce.ibmcloud.com/vulnerabilities/113898http://www.ibm.com/support/docview.wss?uid=swg22006439http://www.securityfocus.com/bid/100599http://www.securitytracker.com/id/1039231https://exchange.xforce.ibmcloud.com/vulnerabilities/113898
2017-08-29
Published