CVE-2020-10531
published 2020-03-12CVE-2020-10531: An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow…
PriorityP345high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
2.67%
84.1th percentile
An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | icu | < icu 63.2-3 (bookworm) | icu 63.2-3 (bookworm) |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| fedoraproject | fedora | — | — |
| chrome | < 80.0.3987.122 | 80.0.3987.122 | |
| icu-project | international_components_for_unicode | <= 66.1 | — |
| nodejs | node.js | 10.0.0 – 10.12.0 | — |
| nodejs | node.js | >= 10.13.0 < 10.21.0 | 10.21.0 |
| opensuse | leap | — | — |
| oracle | banking_extensibility_workbench | — | — |
| oracle | banking_extensibility_workbench | — | — |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_workstation | — | — |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.8HIGH
vendor_debian8.8HIGH
vendor_redhat8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-8xp2-qvq2-xhpx: An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66
ghsa_unreviewed·2022-05-24
CVE-2020-10531 [MEDIUM] CWE-190 GHSA-8xp2-qvq2-xhpx: An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66
An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.
OSV
CVE-2020-10531: An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66
osv·2020-03-12·CVSS 8.8
CVE-2020-10531 [HIGH] CVE-2020-10531: An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66
An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.
CISA ICS
Siemens SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1
cisa_ics·2023-12-14
Siemens SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1
ICS Advisory
##
Siemens SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1
Release DateDecember 14, 2023
Alert CodeICSA-23-348-10
As of January 10, 2023, CISA will no longer be updating ICS security advisories for Siemens product vulnerabilities beyond the initial advisory. For the most up-to-date information on vulnerabilities in this advisory, please see Siemens' ProductCERT Security Advisories (CERT Services | Services | Siemens Global).
View CSAF
## 1. EXECUTIVE SUMMARY
- CVSS v3 9.8
- ATTENTION: Exploitable remotely/low attack complexity
- Vendor: Siemens
- Equipment: SIMATIC S7-1500 CPU 1518(F)-4 PN/DP MFP V3.1
- Vulnerabilities: Improper Restriction of XML External Entity Reference, Time-of-check Time-of-use (TOCTOU) Race Condition, Command Injection, Miss
Ubuntu
ICU vulnerability
vendor_ubuntu·2020-03-17
CVE-2020-10531 ICU vulnerability
Title: ICU vulnerability
Summary: ICU could be made to execute arbitrary code if it received a specially crafted
string.
André Bargull discovered that ICU incorrectly handled certain strings.
An attacker could possibly use this issue to execute arbitrary code.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
ICU: Integer overflow in UnicodeString::doAppend()
vendor_redhat·2020-02-25·CVSS 8.8
CVE-2020-10531 [HIGH] CWE-190 ICU: Integer overflow in UnicodeString::doAppend()
ICU: Integer overflow in UnicodeString::doAppend()
An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.
Package: icu (Red Hat Enterprise Linux 5) - Out of support scope
Package: java-1.7.0-openjdk (Red Hat Enterprise Linux 5) - Not affected
Package: icu4j (Red Hat Enterprise Linux 6) - Not affected
Package: java-1.7.0-openjdk (Red Hat Enterprise Linux 6) - Not affected
Package: java-1.8.0-openjdk (Red Hat Enterprise Linux 6) - Not affected
Package: java-11-openjdk (Red Hat Enterprise Linux 7) - Not affected
Package: java-1.7.0-openjdk (Red Hat Enterprise Linux 7) - Not affected
Package: java-1.8.0-openjdk (Red
Debian
CVE-2020-10531: icu - An issue was discovered in International Components for Unicode (ICU) for C/C++ ...
vendor_debian·2020·CVSS 8.8
CVE-2020-10531 [HIGH] CVE-2020-10531: icu - An issue was discovered in International Components for Unicode (ICU) for C/C++ ...
An issue was discovered in International Components for Unicode (ICU) for C/C++ through 66.1. An integer overflow, leading to a heap-based buffer overflow, exists in the UnicodeString::doAppend() function in common/unistr.cpp.
Scope: local
bookworm: resolved (fixed in 63.2-3)
bullseye: resolved (fixed in 63.2-3)
forky: resolved (fixed in 63.2-3)
sid: resolved (fixed in 63.2-3)
trixie: resolved (fixed in 63.2-3)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-10531 nodejs:10/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
bugzilla·2020-06-15·CVSS 8.8
CVE-2020-10531 [HIGH] CVE-2020-10531 nodejs:10/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
CVE-2020-10531 nodejs:10/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple
Bugzilla
CVE-2020-10531 nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
bugzilla·2020-06-15·CVSS 8.8
CVE-2020-10531 [HIGH] CVE-2020-10531 nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
CVE-2020-10531 nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported
Bugzilla
CVE-2020-10531 nodejs:12/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
bugzilla·2020-06-15·CVSS 8.8
CVE-2020-10531 [HIGH] CVE-2020-10531 nodejs:12/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
CVE-2020-10531 nodejs:12/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple
Bugzilla
CVE-2020-10531 nodejs:13/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
bugzilla·2020-06-15·CVSS 8.8
CVE-2020-10531 [HIGH] CVE-2020-10531 nodejs:13/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
CVE-2020-10531 nodejs:13/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple
Bugzilla
CVE-2020-10531 nodejs:14/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
bugzilla·2020-06-15·CVSS 8.8
CVE-2020-10531 [HIGH] CVE-2020-10531 nodejs:14/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
CVE-2020-10531 nodejs:14/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple
Bugzilla
CVE-2020-10531 nodejs: ICU: Integer overflow in UnicodeString::doAppend() [epel-all]
bugzilla·2020-06-15·CVSS 8.8
CVE-2020-10531 [HIGH] CVE-2020-10531 nodejs: ICU: Integer overflow in UnicodeString::doAppend() [epel-all]
CVE-2020-10531 nodejs: ICU: Integer overflow in UnicodeString::doAppend() [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported ver
Bugzilla
CVE-2020-10531 nodejs:11/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
bugzilla·2020-06-15·CVSS 8.8
CVE-2020-10531 [HIGH] CVE-2020-10531 nodejs:11/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
CVE-2020-10531 nodejs:11/nodejs: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple
Bugzilla
CVE-2020-10531 chromium: ICU: Integer overflow in UnicodeString::doAppend() [epel-all]
bugzilla·2020-02-26·CVSS 8.8
CVE-2020-10531 [HIGH] CVE-2020-10531 chromium: ICU: Integer overflow in UnicodeString::doAppend() [epel-all]
CVE-2020-10531 chromium: ICU: Integer overflow in UnicodeString::doAppend() [epel-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported v
Bugzilla
CVE-2020-10531 chromium: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
bugzilla·2020-02-26·CVSS 8.8
CVE-2020-10531 [HIGH] CVE-2020-10531 chromium: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
CVE-2020-10531 chromium: ICU: Integer overflow in UnicodeString::doAppend() [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple support
Bugzilla
CVE-2020-10531 ICU: Integer overflow in UnicodeString::doAppend()
bugzilla·2020-02-26·CVSS 8.8
CVE-2020-10531 [HIGH] CVE-2020-10531 ICU: Integer overflow in UnicodeString::doAppend()
CVE-2020-10531 ICU: Integer overflow in UnicodeString::doAppend()
Integer overflow in ICU
Discussion:
External References:
https://chromereleases.googleblog.com/2020/02/stable-channel-update-for-desktop_24.html
---
Created chromium tracking bugs for this issue:
Affects: epel-all [bug 1807359]
Affects: fedora-all [bug 1807358]
---
Chromium bug: https://bugs.chromium.org/p/chromium/issues/detail?id=1044570 (private)
Upstream ICU bug: https://unicode-org.atlassian.net/browse/ICU-20958 (private)
Upstream pull request: https://github.com/unicode-org/icu/pull/971
Upstream patch: https://github.com/unicode-org/icu/commit/b7d08bc04a4296982fcef8b6b8a354a9e4e7afca
---
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2020:0738 htt
arXiv
Threat Assessment in Machine Learning based Systems
arxiv_fulltext·2022-06-30
Threat Assessment in Machine Learning based Systems
Threat Assessment in Machine Learning based Systems
Lionel Nganyewou Tidjon and Foutse Khomh, Senior Member, IEEE
The authors are with Polytechnique Montréal, Montréal, QC H3C 3A7, Canada.
E-mail: \lionel.tidjon, foutse.khomh\@polymtl.ca
## Abstract
Machine learning is a field of artificial intelligence (AI) that is becoming essential for several critical systems, making it a good target for threat actors. Threat actors exploit different Tactics, Techniques, and Procedures (TTPs) against the confidentiality, integrity, and availability of Machine Learning (ML) systems.
During the ML
cycle, they exploit adversarial TTPs to poison data and fool ML-based systems. In recent years, multiple security practices have been proposed for traditional systems but they are not enough to cope with th
http://lists.opensuse.org/opensuse-security-announce/2020-04/msg00004.htmlhttps://access.redhat.com/errata/RHSA-2020:0738https://bugs.chromium.org/p/chromium/issues/detail?id=1044570https://chromereleases.googleblog.com/2020/02/stable-channel-update-for-desktop_24.htmlhttps://chromium.googlesource.com/chromium/deps/icu/+/9f4020916eb1f28f3666f018fdcbe6c9a37f0e08https://github.com/unicode-org/icu/commit/b7d08bc04a4296982fcef8b6b8a354a9e4e7afcahttps://github.com/unicode-org/icu/pull/971https://lists.debian.org/debian-lts-announce/2020/03/msg00024.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4OOYAMJVLLCLXDTHW3V5UXNULZBBK4O6/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6IOHSO6BUKC6I66J5PZOMAGFVJ66ZS57/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/X3B5RWJQD5LA45MYLLR55KZJOJ5NVZGP/https://security.gentoo.org/glsa/202003-15https://unicode-org.atlassian.net/browse/ICU-20958https://usn.ubuntu.com/4305-1/https://www.debian.org/security/2020/dsa-4646https://www.oracle.com//security-alerts/cpujul2021.htmlhttps://www.oracle.com/security-alerts/cpuapr2022.htmlhttps://www.oracle.com/security-alerts/cpujan2021.htmlhttp://lists.opensuse.org/opensuse-security-announce/2020-04/msg00004.htmlhttps://access.redhat.com/errata/RHSA-2020:0738https://bugs.chromium.org/p/chromium/issues/detail?id=1044570https://chromereleases.googleblog.com/2020/02/stable-channel-update-for-desktop_24.htmlhttps://chromium.googlesource.com/chromium/deps/icu/+/9f4020916eb1f28f3666f018fdcbe6c9a37f0e08https://github.com/unicode-org/icu/commit/b7d08bc04a4296982fcef8b6b8a354a9e4e7afcahttps://github.com/unicode-org/icu/pull/971https://lists.debian.org/debian-lts-announce/2020/03/msg00024.htmlhttps://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/4OOYAMJVLLCLXDTHW3V5UXNULZBBK4O6/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/6IOHSO6BUKC6I66J5PZOMAGFVJ66ZS57/https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/X3B5RWJQD5LA45MYLLR55KZJOJ5NVZGP/https://security.gentoo.org/glsa/202003-15https://unicode-org.atlassian.net/browse/ICU-20958https://usn.ubuntu.com/4305-1/https://www.debian.org/security/2020/dsa-4646https://www.oracle.com//security-alerts/cpujul2021.htmlhttps://www.oracle.com/security-alerts/cpuapr2022.htmlhttps://www.oracle.com/security-alerts/cpujan2021.html
2020-03-12
Published