CVE-2019-3729
published 2019-09-30CVE-2019-3729: RSA BSAFE Micro Edition Suite versions prior to 4.4 (in 4.0.x, 4.1.x, 4.2.x and 4.3.x) are vulnerable to a Heap-based Buffer Overflow vulnerability when…
PriorityP48low2.4CVSS 3.1
AVAACLPRHUINSUCNINAL
EPSS
0.40%
32.5th percentile
RSA BSAFE Micro Edition Suite versions prior to 4.4 (in 4.0.x, 4.1.x, 4.2.x and 4.3.x) are vulnerable to a Heap-based Buffer Overflow vulnerability when parsing ECDSA signature. A malicious user with adjacent network access could potentially exploit this vulnerability to cause a crash in the library of the affected system.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| dell | bsafe_micro-edition-suite | >= 4.0.0 < 4.0.13 | 4.0.13 |
| dell | bsafe_micro-edition-suite | >= 4.1.0 < 4.4.0 | 4.4.0 |
| dell | rsa_bsafe_mes | >= unspecified < 4.4 | 4.4 |
CVSS provenance
nvdv3.12.4LOWCVSS:3.1/AV:A/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L
nvdv3.02.4LOWCVSS:3.0/AV:A/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L
nvdv2.02.7LOWAV:A/AC:L/Au:S/C:N/I:N/A:P
vendor_redhat8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-ff5p-8cgp-p5jc: RSA BSAFE Micro Edition Suite versions prior to 4
ghsa_unreviewed·2022-05-24
CVE-2019-3729 [LOW] CWE-787 GHSA-ff5p-8cgp-p5jc: RSA BSAFE Micro Edition Suite versions prior to 4
RSA BSAFE Micro Edition Suite versions prior to 4.4 (in 4.0.x, 4.1.x, 4.2.x and 4.3.x) are vulnerable to a Heap-based Buffer Overflow vulnerability when parsing ECDSA signature. A malicious user with adjacent network access could potentially exploit this vulnerability to cause a crash in the library of the affected system.
Red Hat
chromium-browser: parameter passing error in media player leading to unauthorized access
vendor_redhat·2019-04-30·CVSS 8.8
CVE-2019-5824 [HIGH] CWE-20 chromium-browser: parameter passing error in media player leading to unauthorized access
chromium-browser: parameter passing error in media player leading to unauthorized access
Parameter passing error in media in Google Chrome prior to 74.0.3729.131 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Red Hat
sqlite: out-of-bounds access due to the use of 32-bit memory allocator interfaces
vendor_redhat·2019-04-30·CVSS 8.8
CVE-2019-5827 [HIGH] CWE-125 sqlite: out-of-bounds access due to the use of 32-bit memory allocator interfaces
sqlite: out-of-bounds access due to the use of 32-bit memory allocator interfaces
Integer overflow in SQLite via WebSQL in Google Chrome prior to 74.0.3729.131 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Statement: This flaw is not remotely exploitable for sqlite package shipped with Red Hat Enterprise Linux therefore it is rated as having moderate impact for sqlite.
Package: sqlite (Red Hat Enterprise Linux 6) - Out of support scope
Package: sqlite (Red Hat Enterprise Linux 7) - Will not fix
Red Hat
chromium-browser: Use after free in Blink
vendor_redhat·2019-04-23·CVSS 8.8
CVE-2019-5808 [HIGH] chromium-browser: Use after free in Blink
chromium-browser: Use after free in Blink
Use after free in Blink in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Red Hat
chromium-browser: Use after free in Blink
vendor_redhat·2019-04-23·CVSS 8.8
CVE-2019-5809 [HIGH] chromium-browser: Use after free in Blink
chromium-browser: Use after free in Blink
Use after free in file chooser in Google Chrome prior to 74.0.3729.108 allowed a remote attacker who had compromised the renderer process to perform privilege escalation via a crafted HTML page.
Red Hat
chromium-browser: Heap buffer overflow in Angle on Windows
vendor_redhat·2019-04-23·CVSS 8.8
CVE-2019-5817 [HIGH] chromium-browser: Heap buffer overflow in Angle on Windows
chromium-browser: Heap buffer overflow in Angle on Windows
Heap buffer overflow in ANGLE in Google Chrome on Windows prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Package: chromium-browser (Red Hat Enterprise Linux 6) - Not affected
Red Hat
chromium-browser: Exploit persistence extension on Android
vendor_redhat·2019-04-23·CVSS 8.8
CVE-2019-5816 [HIGH] chromium-browser: Exploit persistence extension on Android
chromium-browser: Exploit persistence extension on Android
Process lifetime issue in Chrome in Google Chrome on Android prior to 74.0.3729.108 allowed a remote attacker to potentially persist an exploited process via a crafted HTML page.
Package: chromium-browser (Red Hat Enterprise Linux 6) - Not affected
Red Hat
chromium-browser: CORS bypass in Blink
vendor_redhat·2019-04-23·CVSS 8.8
CVE-2019-5811 [HIGH] chromium-browser: CORS bypass in Blink
chromium-browser: CORS bypass in Blink
Incorrect handling of CORS in ServiceWorker in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to bypass same origin policy via a crafted HTML page.
Red Hat
chromium-browser: Incorrect escaping in developer tools
vendor_redhat·2019-04-23·CVSS 7.8
CVE-2019-5819 [HIGH] chromium-browser: Incorrect escaping in developer tools
chromium-browser: Incorrect escaping in developer tools
Insufficient data validation in developer tools in Google Chrome on OS X prior to 74.0.3729.108 allowed a local attacker to execute arbitrary code via a crafted string copied to clipboard.
Red Hat
chromium-browser: CORS bypass in download manager
vendor_redhat·2019-04-23·CVSS 8.8
CVE-2019-5822 [HIGH] chromium-browser: CORS bypass in download manager
chromium-browser: CORS bypass in download manager
Inappropriate implementation in Blink in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to bypass same origin policy via a crafted HTML page.
Red Hat
chromium-browser: User information disclosure in Autofill
vendor_redhat·2019-04-23·CVSS 6.5
CVE-2019-5810 [MEDIUM] chromium-browser: User information disclosure in Autofill
chromium-browser: User information disclosure in Autofill
Information leak in autofill in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
Red Hat
chromium-browser: CORS bypass in Blink
vendor_redhat·2019-04-23·CVSS 6.5
CVE-2019-5814 [MEDIUM] chromium-browser: CORS bypass in Blink
chromium-browser: CORS bypass in Blink
Insufficient policy enforcement in Blink in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
Red Hat
chromium-browser: Forced navigation from service worker
vendor_redhat·2019-04-23·CVSS 5.4
CVE-2019-5823 [MEDIUM] chromium-browser: Forced navigation from service worker
chromium-browser: Forced navigation from service worker
Insufficient policy enforcement in service workers in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
Red Hat
chromium-browser: Use after free in PDFium
vendor_redhat·2019-04-23·CVSS 6.5
CVE-2019-5805 [MEDIUM] chromium-browser: Use after free in PDFium
chromium-browser: Use after free in PDFium
Use-after-free in PDFium in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
Red Hat
chromium-browser: Memory corruption in V8
vendor_redhat·2019-04-23·CVSS 8.8
CVE-2019-5807 [HIGH] chromium-browser: Memory corruption in V8
chromium-browser: Memory corruption in V8
Object lifetime issue in V8 in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Red Hat
chromium-browser: Integer overflow in PDFium
vendor_redhat·2019-04-23·CVSS 8.8
CVE-2019-5820 [HIGH] chromium-browser: Integer overflow in PDFium
chromium-browser: Integer overflow in PDFium
Integer overflow in PDFium in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
Red Hat
chromium-browser: URL spoof in Omnibox on iOS
vendor_redhat·2019-04-23·CVSS 6.5
CVE-2019-5812 [MEDIUM] chromium-browser: URL spoof in Omnibox on iOS
chromium-browser: URL spoof in Omnibox on iOS
Inadequate security UI in iOS UI in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
Package: chromium-browser (Red Hat Enterprise Linux 6) - Not affected
Red Hat
chromium-browser: Integer overflow in Angle
vendor_redhat·2019-04-23·CVSS 8.8
CVE-2019-5806 [HIGH] chromium-browser: Integer overflow in Angle
chromium-browser: Integer overflow in Angle
Integer overflow in ANGLE in Google Chrome on Windows prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Red Hat
chromium-browser: Integer overflow in PDFium
vendor_redhat·2019-04-23·CVSS 8.8
CVE-2019-5821 [HIGH] chromium-browser: Integer overflow in PDFium
chromium-browser: Integer overflow in PDFium
Integer overflow in PDFium in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
Red Hat
chromium-browser: Uninitialized value in media reader
vendor_redhat·2019-04-23·CVSS 6.5
CVE-2019-5818 [MEDIUM] chromium-browser: Uninitialized value in media reader
chromium-browser: Uninitialized value in media reader
Uninitialized data in media in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted video file.
Red Hat
chromium-browser: Out of bounds read in V8
vendor_redhat·2019-04-23·CVSS 8.8
CVE-2019-5813 [HIGH] chromium-browser: Out of bounds read in V8
chromium-browser: Out of bounds read in V8
Use after free in V8 in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
No detection rules found.
Bugzilla
CVE-2019-5826 chromium-browser: Use-after-free in IndexedDB
bugzilla·2019-05-07·CVSS 6.5
CVE-2019-5826 [MEDIUM] CVE-2019-5826 chromium-browser: Use-after-free in IndexedDB
CVE-2019-5826 chromium-browser: Use-after-free in IndexedDB
An use-after-free flaw was found in the IndexedDB component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=941746
External References:
https://chromereleases.googleblog.com/2019/04/stable-channel-update-for-desktop_30.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1707252]
Affects: fedora-all [bug 1707251]
---
As per chromium advisory:
https://chromereleases.googleblog.com/2019/04/stable-channel-update-for-desktop_30.html
this issue was already addressed via "chromium 74.0.3729.108".
This issue was addressed in Red Hat Enterprise Linux 6 via: https://access.redhat.com/errata/RHSA-2019:1021
Bugzilla
CVE-2019-5825 chromium-browser: Out-of-bounds write in V8
bugzilla·2019-05-07·CVSS 6.5
CVE-2019-5825 [MEDIUM] CVE-2019-5825 chromium-browser: Out-of-bounds write in V8
CVE-2019-5825 chromium-browser: Out-of-bounds write in V8
An out-of-bounds write flaw was found in the V8 component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=941743
External References:
https://chromereleases.googleblog.com/2019/04/stable-channel-update-for-desktop_30.html
Discussion:
Created chromium tracking bugs for this issue:
Affects: epel-7 [bug 1707252]
Affects: fedora-all [bug 1707251]
---
As per chromium advisory:
https://chromereleases.googleblog.com/2019/04/stable-channel-update-for-desktop_30.html
this issue was already addressed via "chromium 74.0.3729.108".
This issue was addressed in Red Hat Enterprise Linux 6 via: https://access.redhat.com/errata/RHSA-2019:1021
2019-09-30
Published