CVE-2018-3004
published 2018-07-18CVE-2018-3004: Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, 12.1.0.2,12.2.0.1 and 18.2. Difficult to…
PriorityP431medium5.3CVSS 3.0
AVNACHPRLUINSUCHINAN
EPSS
2.67%
84.2th percentile
Vulnerability in the Java VM component of Oracle Database Server. Supported versions that are affected are 11.2.0.4, 12.1.0.2,12.2.0.1 and 18.2. Difficult to exploit vulnerability allows low privileged attacker having Create Session, Create Procedure privilege with network access via multiple protocols to compromise Java VM. Successful attacks of this vulnerability can result in unauthorized access to critical data or complete access to all Java VM accessible data. CVSS 3.0 Base Score 5.3 (Confidentiality impacts). CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N).
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | database_server | — | — |
| oracle | database_server | — | — |
| oracle | database_server | — | — |
| oracle | database_server | — | — |
| oracle_corporation | oracle_database | — | — |
| oracle_corporation | oracle_database | — | — |
| oracle_corporation | oracle_database | — | — |
| oracle_corporation | oracle_database | — | — |
CVSS provenance
nvdv3.05.3MEDIUMCVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv2.03.5LOWAV:N/AC:M/Au:S/C:P/I:N/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
Tenable
Oracle JavaVM Database Takeover
blogs_tenable·2018-08-15·CVSS 5.3
[MEDIUM] Oracle JavaVM Database Takeover
Blog / Cyber Exposure Alerts
Subscribe
# Oracle JavaVM Database Takeover
Paul Davis
August 15, 2018
2 Min Read
A new vulnerability discovered in the Oracle Database JavaVM component can result in complete database compromise and shell access to the underlying server.
## Background
Oracle released an out-of-band update to its flagship database product for an authenticated vulnerability in the JavaVM component. According to Oracle, the vulnerability "can result in complete compromise of the Oracle Database and shell access to the underlying server." The same issue was found and patched in the July 2018 critical patch update (CPU) but was not reported as a critical vulnerability for unspecified reasons.
## Vulnerability details
According to Oracle, this vulnerability affects “...vers
Tenable
Oracle JavaVM Database Takeover
blogs_tenable·2018-08-15
Oracle JavaVM Database Takeover
## Cloud Exposure
Tenable Cloud Security (CNAPP) Request a demo
Tenable Cloud Vulnerability Management Request a demo
Tenable CIEM Request a demo
Secure your cloud
## Vulnerability Exposure
Tenable Vulnerability Management Try for free
Tenable Security Center Request a demo
Tenable Web App Scanning Try for free
Tenable Patch Management Request a demo
Tenable Enclave Security Request a demo
Tenable Attack Surface Management Request a demo
Tenable Nessus Try for free
## AI Exposure
Tenable AI Exposure Request a demo
## OT/IoT Exposure
Tenable OT Security Request a demo
## Identity Exposure
Tenable Identity Exposure Request a demo
## Business needs
Active Directory
AI Security Posture Management (AI-SPM)
AWS security
Azure security
Cloud Security Posture Man
Bugzilla
CVE-2018-17471 chromium-browser: Security UI occlusion in full screen mode
bugzilla·2018-10-17·CVSS 4.3
CVE-2018-17471 [MEDIUM] CVE-2018-17471 chromium-browser: Security UI occlusion in full screen mode
CVE-2018-17471 chromium-browser: Security UI occlusion in full screen mode
A security ui occlusion flaw was found in the full screen mode component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=873080
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-17466 chromium-browser, firefox: Memory corruption in Angle
bugzilla·2018-10-17·CVSS 8.8
CVE-2018-17466 [HIGH] CVE-2018-17466 chromium-browser, firefox: Memory corruption in Angle
CVE-2018-17466 chromium-browser, firefox: Memory corruption in Angle
A memory corruption flaw was found in the Angle component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=880906
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
---
This flaw also affected Firefox 60.3 ESR:
https://www.mozilla.org/en-US/security/advisories/mfsa2018-30/#CVE-2018-17466
---
This issue has been addressed
Bugzilla
CVE-2018-17470 chromium-browser: Memory corruption in GPU Internals
bugzilla·2018-10-17·CVSS 7.4
CVE-2018-17470 [HIGH] CVE-2018-17470 chromium-browser: Memory corruption in GPU Internals
CVE-2018-17470 chromium-browser: Memory corruption in GPU Internals
A memory corruption flaw was found in the GPU Internals component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=877874
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-17473 chromium-browser: URL spoof in Omnibox
bugzilla·2018-10-17·CVSS 4.3
CVE-2018-17473 [MEDIUM] CVE-2018-17473 chromium-browser: URL spoof in Omnibox
CVE-2018-17473 chromium-browser: URL spoof in Omnibox
An url spoof flaw was found in the Omnibox component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=882078
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-17467 chromium-browser: URL spoof in Omnibox
bugzilla·2018-10-17·CVSS 4.3
CVE-2018-17467 [MEDIUM] CVE-2018-17467 chromium-browser: URL spoof in Omnibox
CVE-2018-17467 chromium-browser: URL spoof in Omnibox
An url spoof flaw was found in the Omnibox component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=844881
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-5179 chromium-browser: Lack of limits on update() in ServiceWorker
bugzilla·2018-10-17·CVSS 7.5
CVE-2018-5179 [HIGH] CVE-2018-5179 chromium-browser: Lack of limits on update() in ServiceWorker
CVE-2018-5179 chromium-browser: Lack of limits on update() in ServiceWorker
A lack of limits on update() flaw was found in the ServiceWorker component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=805496
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-17469 chromium-browser: Heap buffer overflow in PDFium
bugzilla·2018-10-17·CVSS 8.8
CVE-2018-17469 [HIGH] CVE-2018-17469 chromium-browser: Heap buffer overflow in PDFium
CVE-2018-17469 chromium-browser: Heap buffer overflow in PDFium
A heap buffer overflow flaw was found in the PDFium component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=880675
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-17462 chromium-browser: Sandbox escape in AppCache
bugzilla·2018-10-17·CVSS 9.6
CVE-2018-17462 [CRITICAL] CVE-2018-17462 chromium-browser: Sandbox escape in AppCache
CVE-2018-17462 chromium-browser: Sandbox escape in AppCache
A sandbox escape flaw was found in the AppCache component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=888926
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-17477 chromium-browser: UI spoof in Extensions
bugzilla·2018-10-17·CVSS 4.3
CVE-2018-17477 [MEDIUM] CVE-2018-17477 chromium-browser: UI spoof in Extensions
CVE-2018-17477 chromium-browser: UI spoof in Extensions
An ui spoof flaw was found in the Extensions component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=863703
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-17464 chromium-browser: URL spoof in Omnibox
bugzilla·2018-10-17·CVSS 4.3
CVE-2018-17464 [MEDIUM] CVE-2018-17464 chromium-browser: URL spoof in Omnibox
CVE-2018-17464 chromium-browser: URL spoof in Omnibox
An url spoof flaw was found in the Omnibox component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=887273
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-17465 chromium-browser: Use after free in V8
bugzilla·2018-10-17·CVSS 8.8
CVE-2018-17465 [HIGH] CVE-2018-17465 chromium-browser: Use after free in V8
CVE-2018-17465 chromium-browser: Use after free in V8
An use after free flaw was found in the V8 component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=870226
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-17475 chromium-browser: URL spoof in Omnibox
bugzilla·2018-10-17·CVSS 4.3
CVE-2018-17475 [MEDIUM] CVE-2018-17475 chromium-browser: URL spoof in Omnibox
CVE-2018-17475 chromium-browser: URL spoof in Omnibox
An url spoof flaw was found in the Omnibox component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=852634
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-17476 chromium-browser: Security UI occlusion in full screen mode
bugzilla·2018-10-17·CVSS 4.3
CVE-2018-17476 [MEDIUM] CVE-2018-17476 chromium-browser: Security UI occlusion in full screen mode
CVE-2018-17476 chromium-browser: Security UI occlusion in full screen mode
A security ui occlusion flaw was found in the full screen mode component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=812769
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-17463 chromium-browser: Remote code execution in V8
bugzilla·2018-10-17·CVSS 8.8
CVE-2018-17463 [HIGH] CVE-2018-17463 chromium-browser: Remote code execution in V8
CVE-2018-17463 chromium-browser: Remote code execution in V8
A remote code execution flaw was found in the V8 component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=888923
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-17474 chromium-browser: Use after free in Blink
bugzilla·2018-10-17·CVSS 8.8
CVE-2018-17474 [HIGH] CVE-2018-17474 chromium-browser: Use after free in Blink
CVE-2018-17474 chromium-browser: Use after free in Blink
An use after free flaw was found in the Blink component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=843151
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
Bugzilla
CVE-2018-17468 chromium-browser: Cross-origin URL disclosure in Blink
bugzilla·2018-10-17·CVSS 6.5
CVE-2018-17468 [MEDIUM] CVE-2018-17468 chromium-browser: Cross-origin URL disclosure in Blink
CVE-2018-17468 chromium-browser: Cross-origin URL disclosure in Blink
A cross-origin url disclosure flaw was found in the Blink component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=876822
External References:
https://chromereleases.googleblog.com/2018/10/stable-channel-update-for-desktop.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1640122]
Affects: fedora-all [bug 1640121]
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2018:3004 https://access.redhat.com/errata/RHSA-2018:3004
http://obtruse.syfrtext.com/2018/07/oracle-privilege-escalation-via.htmlhttp://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.htmlhttp://www.securityfocus.com/bid/104805http://www.securitytracker.com/id/1041299http://obtruse.syfrtext.com/2018/07/oracle-privilege-escalation-via.htmlhttp://www.oracle.com/technetwork/security-advisory/cpujul2018-4258247.htmlhttp://www.securityfocus.com/bid/104805http://www.securitytracker.com/id/1041299
2018-07-18
Published