BMC Server Automation RSCD Agent CVE-2016-5063 Authorization Bypass Vulnerability
Monthly Archives: October 2016
Red Hat Security Advisory 2016-2120-01
Red Hat Security Advisory 2016-2120-01 – The kernel packages contain the Linux kernel, the core of any Linux operating system. Security Fix: A race condition was found in the way the Linux kernel’s memory subsystem handled the copy-on-write breakage of private read-only memory mappings. An unprivileged, local user could use this flaw to gain write access to otherwise read-only memory mappings and thus increase their privileges on the system.
Red Hat Security Advisory 2016-2101-01
Red Hat Security Advisory 2016-2101-01 – Red Hat OpenShift Container Platform is the company’s cloud computing Platform-as-a-Service solution designed for on-premise or private cloud deployments. Security Fix: A regular expression denial of service flaw was found in Tough-Cookie. An attacker able to make an application using Touch-Cookie to parse a sufficiently large HTTP request Cookie header could cause the application to consume an excessive amount of CPU.
Ubuntu Security Notice USN-3114-2
Ubuntu Security Notice 3114-2 – USN-3114-1 fixed a vulnerability in nginx. A packaging issue prevented nginx from being reinstalled or upgraded to a subsequent release. This update fixes the problem. Dawid Golunski discovered that the nginx package incorrectly handled log file permissions. A remote attacker could possibly use this issue to obtain root privileges. Various other issues were also addressed.
Ubuntu Security Notice USN-3111-1
Ubuntu Security Notice 3111-1 – A use-after-free was discovered in service workers. If a user were tricked in to opening a specially crafted website, an attacker could potentially exploit this to cause a denial of service via program crash, or execute arbitrary code. It was discovered that web content could access information in the HTTP cache in some circumstances. An attacker could potentially exploit this to obtain sensitive information. Various other issues were also addressed.
Red Hat Security Advisory 2016-2119-01
Red Hat Security Advisory 2016-2119-01 – The flash-plugin package contains a Mozilla Firefox compatible Adobe Flash Player web browser plug-in. This update upgrades Flash Player to version 11.2.202.643. Security Fix: This update fixes one vulnerability in Adobe Flash Player. This vulnerability, detailed in the Adobe Security Bulletin listed in the References section, could allow an attacker to create a specially crafted SWF file that would cause flash-plugin to crash, execute arbitrary code, or disclose sensitive information when the victim loaded a page containing the malicious SWF content.
CVE-2016-1000120 (catalog)
SQLi and XSS in Huge IT catalog extension v1.0.4 for Joomla
CVE-2016-1000121 (slider)
XSS and SQLi in Huge IT Joomla Slider v1.0.9 extension
CVE-2016-1000122 (slider)
XSS and SQLi in Huge IT Joomla Slider v1.0.9 extension
CVE-2016-6431 (adaptive_security_appliance)
A vulnerability in the local Certificate Authority (CA) feature of Cisco ASA Software before 9.6(1.5) could allow an unauthenticated, remote attacker to cause a reload of the affected system. The vulnerability is due to improper handling of crafted packets during the enrollment operation. An attacker could exploit this vulnerability by sending a crafted enrollment request to the affected system. An exploit could allow the attacker to cause the reload of the affected system. Note: Only HTTPS packets directed to the Cisco ASA interface, where the local CA is allowing user enrollment, can be used to trigger this vulnerability. This vulnerability affects systems configured in routed firewall mode and in single or multiple context mode.