CVE-2017-2664
published 2018-07-26CVE-2017-2664: CloudForms Management Engine (cfme) before 5.7.3 and 5.8.x before 5.8.1 lacks RBAC controls on certain methods in the rails application portion of CloudForms…
PriorityP433medium6.5CVSS 3.0
AVNACLPRLUINSUCNIHAN
EPSS
1.32%
67.6th percentile
CloudForms Management Engine (cfme) before 5.7.3 and 5.8.x before 5.8.1 lacks RBAC controls on certain methods in the rails application portion of CloudForms. An attacker with access could use a variety of methods within the rails application portion of CloudForms to escalate privileges.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| red_hat | cloudforms | — | — |
| red_hat | cloudforms | — | — |
| redhat | cloudforms | — | — |
| redhat | cloudforms | — | — |
| redhat | cloudforms_management_engine | < 5.7.3 | 5.7.3 |
| redhat | cloudforms_management_engine | >= 5.8 < 5.8.1 | 5.8.1 |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:P/A:N
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-rc49-fxf8-jgg2: CloudForms Management Engine (cfme) before 5
ghsa_unreviewed·2022-05-13
CVE-2017-2664 [MEDIUM] GHSA-rc49-fxf8-jgg2: CloudForms Management Engine (cfme) before 5
CloudForms Management Engine (cfme) before 5.7.3 and 5.8.x before 5.8.1 lacks RBAC controls on certain methods in the rails application portion of CloudForms. An attacker with access could use a variety of methods within the rails application portion of CloudForms to escalate privileges.
Red Hat
CloudForms: lack of RBAC on various methods in web UI
vendor_redhat·2017-08-02·CVSS 6.5
CVE-2017-2664 [MEDIUM] CWE-284 CloudForms: lack of RBAC on various methods in web UI
CloudForms: lack of RBAC on various methods in web UI
CloudForms Management Engine (cfme) before 5.7.3 and 5.8.x before 5.8.1 lacks RBAC controls on certain methods in the rails application portion of CloudForms. An attacker with access could use a variety of methods within the rails application portion of CloudForms to escalate privileges.
CloudForms lacks RBAC controls on certain methods in the rails application portion of CloudForms. An attacker with access could use a variety of methods within the rails applications portion of CloudForms to escalate privileges.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-2664 CloudForms: lack of RBAC on various methods in web UI
bugzilla·2017-03-23·CVSS 6.5
CVE-2017-2664 [MEDIUM] CVE-2017-2664 CloudForms: lack of RBAC on various methods in web UI
CVE-2017-2664 CloudForms: lack of RBAC on various methods in web UI
Libor Pichler and Martin Povolny report:
Cloudforms lacks RBAC controls on a variety of methods potentially allowing authenticated users to escalate privileges and use methods they should not have access to.
Discussion:
Acknowledgments:
Name: Libor Pichler (Red Hat), Martin Povolny (Red Hat)
---
*** Bug 1434771 has been marked as a duplicate of this bug. ***
---
This issue has been addressed in the following products:
CloudForms Management Engine 5.8
Via RHSA-2017:1758 https://access.redhat.com/errata/RHSA-2017:1758
---
This issue has been addressed in the following products:
CloudForms Management Engine 5.7
Via RHSA-2017:3484 https://access.redhat.com/errata/RHSA-2017:3484
Bugzilla
CVE-2017-5563 libtiff: Heap-buffer overflow in LZWEncode tif_lzw.c
bugzilla·2017-01-24·CVSS 8.8
CVE-2017-5563 [HIGH] CVE-2017-5563 libtiff: Heap-buffer overflow in LZWEncode tif_lzw.c
CVE-2017-5563 libtiff: Heap-buffer overflow in LZWEncode tif_lzw.c
LibTIFF is vulnerable to a heap-based buffer over-read in tif_lzw.c resulting in DoS or code execution via a crafted bmp image.
Upstream bug:
http://bugzilla.maptools.org/show_bug.cgi?id=2664
Discussion:
Created libtiff tracking bugs for this issue:
Affects: fedora-all [bug 1410123]
---
Created mingw-libtiff tracking bugs for this issue:
Affects: fedora-all [bug 1410124]
Affects: epel-7 [bug 1410125]
http://www.securityfocus.com/bid/100148https://access.redhat.com/errata/RHSA-2017:1758https://access.redhat.com/errata/RHSA-2017:3484https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2664http://www.securityfocus.com/bid/100148https://access.redhat.com/errata/RHSA-2017:1758https://access.redhat.com/errata/RHSA-2017:3484https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2017-2664
2018-07-26
Published