CVE-2018-3650
published 2018-08-01CVE-2018-3650: Insufficient Input Validation in Bleach module in INTEL Distribution for Python versions prior to IDP 2018 Update 2 allows unprivileged user to bypass URI…
PriorityP335high7.8CVSS 3.0
AVLACLPRLUINSUCHIHAH
EPSS
0.32%
23.9th percentile
Insufficient Input Validation in Bleach module in INTEL Distribution for Python versions prior to IDP 2018 Update 2 allows unprivileged user to bypass URI sanitization via local vector.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| intel | distribution_for_python | < 2018 | 2018 |
| intel | distribution_for_python | — | — |
| intel_corporation | intel_distribution_for_python | — | — |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
vendor_cisco8.6HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-v5j7-m2vx-ghr9: Insufficient Input Validation in Bleach module in INTEL Distribution for Python versions prior to IDP 2018 Update 2 allows unprivileged user to bypass
ghsa_unreviewed·2022-05-14
CVE-2018-3650 [HIGH] CWE-20 GHSA-v5j7-m2vx-ghr9: Insufficient Input Validation in Bleach module in INTEL Distribution for Python versions prior to IDP 2018 Update 2 allows unprivileged user to bypass
Insufficient Input Validation in Bleach module in INTEL Distribution for Python versions prior to IDP 2018 Update 2 allows unprivileged user to bypass URI sanitization via local vector.
Cisco
Cisco IOS XE Software for Cisco Catalyst Switches IPv4 Denial of Service Vulnerability
vendor_cisco·2018-03-28·CVSS 8.6
CVE-2018-0177 [HIGH] CWE-19 Cisco IOS XE Software for Cisco Catalyst Switches IPv4 Denial of Service Vulnerability
Cisco IOS XE Software for Cisco Catalyst Switches IPv4 Denial of Service Vulnerability
A vulnerability in the IP Version 4 (IPv4) processing code of Cisco IOS XE Software running on Cisco Catalyst 3850 and Cisco Catalyst 3650 Series Switches could allow an unauthenticated, remote attacker to cause high CPU utilization, traceback messages, or a reload of an affected device that leads to a denial of service (DoS) condition.
The vulnerability is due to incorrect processing of certain IPv4 packets. An attacker could exploit this vulnerability by sending specific IPv4 packets to an IPv4 address on an affected device. A successful exploit could allow the attacker to cause high CPU utilization, traceback messages, or a reload of the affected device that leads to a DoS condition. If the switch d
Cisco
Cisco IOS XE Software for Cisco Catalyst Switches IPv4 Denial of Service Vulnerability
vendor_cisco·CVSS 3.0
CVE-2018-0177 Cisco IOS XE Software for Cisco Catalyst Switches IPv4 Denial of Service Vulnerability
CVE-2018-0177: Cisco IOS XE Software for Cisco Catalyst Switches IPv4 Denial of Service Vulnerability
A vulnerability in the IP Version 4 (IPv4) processing code of Cisco IOS XE Software running on Cisco Catalyst 3850 and Cisco Catalyst 3650 Series Switches could allow an unauthenticated, remote attacker to cause high CPU utilization, traceback messages, or a reload of an affected device that leads to a denial of service (DoS) condition. The vulnerability is due to incorrect processing of certain IPv4 packets. An attacker could exploit this vulnerability by sending specific IPv4 packets to an IPv4 address on an affected device. A successful exploit could allow the attacker to cause high CPU utilization, traceback messages, or a reload of the affected device that leads to a DoS condition. If
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-15908 ghostscript: .tempfile file permission issues (699657)
bugzilla·2018-08-21·CVSS 7.8
CVE-2018-15908 [HIGH] CVE-2018-15908 ghostscript: .tempfile file permission issues (699657)
CVE-2018-15908 ghostscript: .tempfile file permission issues (699657)
It was discovered that the ghostscript .tempfile function did not properly handle file permissions. A specially crafted PostScript document could possibly exploit this to bypass the -dSAFER protection and delete files or disclose their content.
Discussion:
External References:
http://seclists.org/oss-sec/2018/q3/142
---
Mitigation:
Please see https://bugzilla.redhat.com/show_bug.cgi?id=1619748#c3
---
Patch:
http://git.ghostscript.com/?p=ghostpdl.git;a=commitdiff;h=0d3901189f
---
Acknowledgments:
Name: Tavis Ormandy (Google Project Zero)
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 7
Via RHSA-2018:3650 https://access.redhat.com/errata/RHSA-2018:3650
---
Created gh
Bugzilla
CVE-2018-7562 glpi: Race condition allowing temporary access to an uploaded executable file leading to code execution
bugzilla·2018-03-13·CVSS 7.5
CVE-2018-7562 [HIGH] CVE-2018-7562 glpi: Race condition allowing temporary access to an uploaded executable file leading to code execution
CVE-2018-7562 glpi: Race condition allowing temporary access to an uploaded executable file leading to code execution
A remote code execution issue was discovered in GLPI through 9.2.1. There is a race condition that allows temporary access to an uploaded executable file that will be disallowed. The application allows an authenticated user to upload a file when he/she creates a new ticket via front/fileupload.php. This feature is protected using different types of security features like the check on the file's extension. However, the application uploads and creates a file, though this file is not allowed, and then deletes the file in the uploadFiles method in inc/glpiuploaderhandler.class.php.
Upstream bug:
https://github.com/glpi-project/glpi/pull/3650
Reference:
https://membership.b
2018-08-01
Published