CVE-2017-6059
published 2017-04-12CVE-2017-6059: Mod_auth_openidc.c in the Ping Identity OpenID Connect authentication module for Apache (aka mod_auth_openidc) before 2.14 allows remote attackers to spoof…
PriorityP344high7.5CVSS 3.1
AVNACLPRNUINSUCNIHAN
EPSS
5.18%
91.6th percentile
Mod_auth_openidc.c in the Ping Identity OpenID Connect authentication module for Apache (aka mod_auth_openidc) before 2.14 allows remote attackers to spoof page content via a malicious URL provided to the user, which triggers an invalid request.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | libapache2-mod-auth-openidc | < libapache2-mod-auth-openidc 2.1.5-1 (bookworm) | libapache2-mod-auth-openidc 2.1.5-1 (bookworm) |
| openidc | mod_auth_openidc | < 2.1.4 | 2.1.4 |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
osv7.5HIGH
vendor_redhat9.8CRITICAL
vendor_debian7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-rpc9-4cjr-9wxx: Mod_auth_openidc
ghsa_unreviewed·2022-05-13
CVE-2017-6059 [HIGH] CWE-20 GHSA-rpc9-4cjr-9wxx: Mod_auth_openidc
Mod_auth_openidc.c in the Ping Identity OpenID Connect authentication module for Apache (aka mod_auth_openidc) before 2.14 allows remote attackers to spoof page content via a malicious URL provided to the user, which triggers an invalid request.
OSV
CVE-2017-6059: Mod_auth_openidc
osv·2017-04-12·CVSS 7.5
CVE-2017-6059 [HIGH] CVE-2017-6059: Mod_auth_openidc
Mod_auth_openidc.c in the Ping Identity OpenID Connect authentication module for Apache (aka mod_auth_openidc) before 2.14 allows remote attackers to spoof page content via a malicious URL provided to the user, which triggers an invalid request.
Red Hat
chromium-browser: use-after-free in flash
vendor_redhat·2018-03-06·CVSS 9.8
CVE-2018-6059 [CRITICAL] chromium-browser: use-after-free in flash
chromium-browser: use-after-free in flash
[REJECTED CVE] An use after free flaw was found in the Flash component of the Chromium browser.
Statement: This flaw was found to be a duplicate of CVE-2017-11225. Please see https://access.redhat.com/security/cve/CVE-2017-11225 for information about affected products and security errata.
Package: chromium-browser (Red Hat Enterprise Linux 6) - Not affected
Red Hat
mod_auth_openidc: Shows user-supplied content on error pages
vendor_redhat·2017-01-18·CVSS 7.5
CVE-2017-6059 [HIGH] mod_auth_openidc: Shows user-supplied content on error pages
mod_auth_openidc: Shows user-supplied content on error pages
Mod_auth_openidc.c in the Ping Identity OpenID Connect authentication module for Apache (aka mod_auth_openidc) before 2.14 allows remote attackers to spoof page content via a malicious URL provided to the user, which triggers an invalid request.
A text injection flaw was found in how mod_auth_openidc handled error pages. An attacker could potentially use this flaw to conduct content spoofing and phishing attacks by tricking users into opening specially crafted URLs.
Package: mod_auth_openidc (Red Hat Enterprise Linux 8) - Not affected
Debian
CVE-2017-6059: libapache2-mod-auth-openidc - Mod_auth_openidc.c in the Ping Identity OpenID Connect authentication module for...
vendor_debian·2017·CVSS 7.5
CVE-2017-6059 [HIGH] CVE-2017-6059: libapache2-mod-auth-openidc - Mod_auth_openidc.c in the Ping Identity OpenID Connect authentication module for...
Mod_auth_openidc.c in the Ping Identity OpenID Connect authentication module for Apache (aka mod_auth_openidc) before 2.14 allows remote attackers to spoof page content via a malicious URL provided to the user, which triggers an invalid request.
Scope: local
bookworm: resolved (fixed in 2.1.5-1)
bullseye: resolved (fixed in 2.1.5-1)
forky: resolved (fixed in 2.1.5-1)
sid: resolved (fixed in 2.1.5-1)
trixie: resolved (fixed in 2.1.5-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-6059 chromium-browser: use-after-free in flash
bugzilla·2018-03-07·CVSS 9.8
CVE-2018-6059 [CRITICAL] CVE-2018-6059 chromium-browser: use-after-free in flash
CVE-2018-6059 chromium-browser: use-after-free in flash
An use after free flaw was found in the Flash component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=758863
External References:
https://chromereleases.googleblog.com/2018/03/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: fedora-all [bug 1552502]
Affects: epel-7 [bug 1552504]
---
The Google blog post referenced in comment 0 was updated and no longer mentions this CVE. It now lists different CVE for this issue instead:
[$5000][758863] High CVE-2017-11225: Use after free in Flash. Reported by JieZeng of Tencent Zhanlu Lab on 2017-08-25
The CVE-2017-11225 is for Adobe Flash Player and it was previously covered by Adobe
Bugzilla
CVE-2017-6059 CVE-2017-6062 CVE-2017-6413 mod_auth_openidc: various flaws [fedora-all]
bugzilla·2017-02-21·CVSS 7.5
CVE-2017-6059 [HIGH] CVE-2017-6059 CVE-2017-6062 CVE-2017-6413 mod_auth_openidc: various flaws [fedora-all]
CVE-2017-6059 CVE-2017-6062 CVE-2017-6413 mod_auth_openidc: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported
Bugzilla
CVE-2017-6059 mod_auth_openidc: Shows user-supplied content on error pages
bugzilla·2017-02-21·CVSS 7.5
CVE-2017-6059 [HIGH] CVE-2017-6059 mod_auth_openidc: Shows user-supplied content on error pages
CVE-2017-6059 mod_auth_openidc: Shows user-supplied content on error pages
It was found that the OpenID Connect authentication module for Apache is vulnerable to Content Spoofing due to the user-supplied content being shown in the error pages.
Upstream bug:
https://github.com/pingidentity/mod_auth_openidc/issues/212
Upstream patch:
https://github.com/pingidentity/mod_auth_openidc/commit/612e309bfffd6f9b8ad7cdccda3019fc0865f3b4
Discussion:
Created mod_auth_openidc tracking bugs for this issue:
Affects: fedora-all [bug 1425356]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2019:2112 https://access.redhat.com/errata/RHSA-2019:2112
http://www.openwall.com/lists/oss-security/2017/02/17/6http://www.securityfocus.com/bid/96299https://access.redhat.com/errata/RHSA-2019:2112https://github.com/pingidentity/mod_auth_openidc/commit/612e309bfffd6f9b8ad7cdccda3019fc0865f3b4https://github.com/pingidentity/mod_auth_openidc/issues/212https://github.com/pingidentity/mod_auth_openidc/releases/tag/v2.1.4https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2V3HIGXMUKJGOBMAQAQPGC7G5YYWSUVA/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EJXBG3DG2FUYFGTUTSJFMPIINVFKKB4Z/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WTWUMQ46GZY3O4WU4JCF333LN53R2XQH/http://www.openwall.com/lists/oss-security/2017/02/17/6http://www.securityfocus.com/bid/96299https://access.redhat.com/errata/RHSA-2019:2112https://github.com/pingidentity/mod_auth_openidc/commit/612e309bfffd6f9b8ad7cdccda3019fc0865f3b4https://github.com/pingidentity/mod_auth_openidc/issues/212https://github.com/pingidentity/mod_auth_openidc/releases/tag/v2.1.4https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/2V3HIGXMUKJGOBMAQAQPGC7G5YYWSUVA/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/EJXBG3DG2FUYFGTUTSJFMPIINVFKKB4Z/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WTWUMQ46GZY3O4WU4JCF333LN53R2XQH/
2017-04-12
Published