CVE-2020-1732
published 2020-05-04CVE-2020-1732: A flaw was found in Soteria before 1.0.1, in a way that multiple requests occurring concurrently causing security identity corruption across concurrent threads…
PriorityP419medium4.2CVSS 3.1
AVNACHPRLUINSUCLILAN
EPSS
0.66%
47.6th percentile
A flaw was found in Soteria before 1.0.1, in a way that multiple requests occurring concurrently causing security identity corruption across concurrent threads when using EE Security with WildFly Elytron which can lead to the possibility of being handled using the identity from another request.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| red_hat | soteria | — | — |
| redhat | jboss_enterprise_application_platform | — | — |
| redhat | soteria | < 1.0.1 | 1.0.1 |
CVSS provenance
nvdv3.14.2MEDIUMCVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:L/I:L/A:N
nvdv2.04.9MEDIUMAV:N/AC:M/Au:S/C:P/I:P/A:N
vendor_redhat4.2MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-4x5f-xw5j-gv58: A flaw was found in Soteria before 1
ghsa_unreviewed·2022-05-24
CVE-2020-1732 [MEDIUM] GHSA-4x5f-xw5j-gv58: A flaw was found in Soteria before 1
A flaw was found in Soteria before 1.0.1, in a way that multiple requests occurring concurrently causing security identity corruption across concurrent threads when using EE Security with WildFly Elytron which can lead to the possibility of being handled using the identity from another request.
Red Hat
Soteria: security identity corruption across concurrent threads
vendor_redhat·2020-02-14·CVSS 4.2
CVE-2020-1732 [MEDIUM] CWE-284 Soteria: security identity corruption across concurrent threads
Soteria: security identity corruption across concurrent threads
A flaw was found in Soteria before 1.0.1, in a way that multiple requests occurring concurrently causing security identity corruption across concurrent threads when using EE Security with WildFly Elytron which can lead to the possibility of being handled using the identity from another request.
A flaw was found in WildFly where multiple requests occurring concurrently could be handled using the identity of another request. This vulnerability occurs when using EE Security with WildFly Elytron. The largest threat from this vulnerability is data confidentiality and integrity.
Package: wildfly (Red Hat Decision Manager 7) - Not affected
Package: wildfly (Red Hat Fuse 7) - Not affected
Package: wildfly (Red Hat JBoss Data Grid
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-25676 ImageMagick: outside the range of representable values of type 'long' and integer overflow at MagickCore/pixel.c and MagickCore/cache.c
bugzilla·2020-10-27·CVSS 5.5
CVE-2020-25676 [MEDIUM] CVE-2020-25676 ImageMagick: outside the range of representable values of type 'long' and integer overflow at MagickCore/pixel.c and MagickCore/cache.c
CVE-2020-25676 ImageMagick: outside the range of representable values of type 'long' and integer overflow at MagickCore/pixel.c and MagickCore/cache.c
In ImageMagick 7.0.8-68 there are 2 outside the range of representable values of type 'long' and 5 integer overflow at MagickCore/pixel.c,cache.c.
Reference:
https://github.com/ImageMagick/ImageMagick/issues/1732
Upstream patch:
https://github.com/ImageMagick/ImageMagick/commit/406da3af9e09649cda152663c179902edf5ab3ac
Discussion:
Flaw summary:
In CatromWeights(), MeshInterpolate(), InterpolatePixelChannel(), InterpolatePixelChannels(), and InterpolatePixelInfo(), which are all functions in /MagickCore/pixel.c, there were multiple unconstrained pixel offset calculations which were being used with the floor() function. These calculations
Bugzilla
CVE-2020-1732 Soteria: security identity corruption across concurrent threads
bugzilla·2020-02-11·CVSS 4.2
CVE-2020-1732 [MEDIUM] CVE-2020-1732 Soteria: security identity corruption across concurrent threads
CVE-2020-1732 Soteria: security identity corruption across concurrent threads
A flaw was found in Soteria before 1.0.1 in a way that multiple requests occurring concurrently there is the possibility of being handled using the identity from another request.
Upstream fix:
https://github.com/wildfly-security/soteria/commit/c2479f8c39d7d661341fdcaff7f5e97c5eea1a54
Discussion:
This vulnerability is out of security support scope for the following product:
* SOA Platform 5
Please refer to https://access.redhat.com/support/policy/updates/jboss_notes for more details.
---
This issue has been addressed in the following products:
Red Hat JBoss Enterprise Application Platform 7.2 for RHEL 6
Via RHSA-2020:2058 https://access.redhat.com/errata/RHSA-2020:2058
---
This issue has been addressed
2020-05-04
Published