ALT-BU-2015-2710-1
Branch sisyphus update bulletin.
Closed vulnerabilities
Modified: 2024-11-21
CVE-2016-8685
The findnext function in decompose.c in potrace 1.13 allows remote attackers to cause a denial of service (invalid memory access and crash) via a crafted BMP image.
- [oss-security] 20161008 potrace: invalid memory access in findnext (decompose.c)
- [oss-security] 20161008 potrace: invalid memory access in findnext (decompose.c)
- [oss-security] 20161015 Re: potrace: invalid memory access in findnext (decompose.c)
- [oss-security] 20161015 Re: potrace: invalid memory access in findnext (decompose.c)
- 93470
- 93470
- https://blogs.gentoo.org/ago/2016/08/29/potrace-invalid-memory-access-in-findnext-decompose-c/
- https://blogs.gentoo.org/ago/2016/08/29/potrace-invalid-memory-access-in-findnext-decompose-c/
Modified: 2024-11-21
CVE-2016-8686
The bm_new function in bitmap.h in potrace 1.13 allows remote attackers to have unspecified impact via a crafted image, which triggers a memory allocation failure.
Modified: 2024-11-21
CVE-2016-8694
The bm_readbody_bmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted BMP image, a different vulnerability than CVE-2016-8695 and CVE-2016-8696.
- http://potrace.sourceforge.net/ChangeLog
- http://potrace.sourceforge.net/ChangeLog
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- 93778
- 93778
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiple-three-null-pointer-dereference-in-bm_readbody_bmp-bitmap_io-c/
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiple-three-null-pointer-dereference-in-bm_readbody_bmp-bitmap_io-c/
Modified: 2024-11-21
CVE-2016-8695
The bm_readbody_bmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted BMP image, a different vulnerability than CVE-2016-8694 and CVE-2016-8696.
- http://potrace.sourceforge.net/ChangeLog
- http://potrace.sourceforge.net/ChangeLog
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- 93778
- 93778
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiple-three-null-pointer-dereference-in-bm_readbody_bmp-bitmap_io-c/
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiple-three-null-pointer-dereference-in-bm_readbody_bmp-bitmap_io-c/
Modified: 2024-11-21
CVE-2016-8696
The bm_readbody_bmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted BMP image, a different vulnerability than CVE-2016-8694 and CVE-2016-8695.
- http://potrace.sourceforge.net/ChangeLog
- http://potrace.sourceforge.net/ChangeLog
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- 93778
- 93778
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiple-three-null-pointer-dereference-in-bm_readbody_bmp-bitmap_io-c/
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiple-three-null-pointer-dereference-in-bm_readbody_bmp-bitmap_io-c/
Modified: 2024-11-21
CVE-2016-8697
The bm_new function in bitmap.h in potrace before 1.13 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a crafted BMP image.
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- 93778
- 93778
- https://blogs.gentoo.org/ago/2016/08/08/potrace-divide-by-zero-in-bm_new-bitmap-h/
- https://blogs.gentoo.org/ago/2016/08/08/potrace-divide-by-zero-in-bm_new-bitmap-h/
Modified: 2024-11-21
CVE-2016-8698
Heap-based buffer overflow in the bm_readbody_bmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to have unspecified impact via a crafted BMP image, a different vulnerability than CVE-2016-8699, CVE-2016-8700, CVE-2016-8701, CVE-2016-8702, and CVE-2016-8703.
- http://potrace.sourceforge.net/ChangeLog
- http://potrace.sourceforge.net/ChangeLog
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- 93778
- 93778
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiplesix-heap-based-buffer-overflow-in-bm_readbody_bmp-bitmap_io-c/
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiplesix-heap-based-buffer-overflow-in-bm_readbody_bmp-bitmap_io-c/
Modified: 2024-11-21
CVE-2016-8699
Heap-based buffer overflow in the bm_readbody_bmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to have unspecified impact via a crafted BMP image, a different vulnerability than CVE-2016-8698, CVE-2016-8700, CVE-2016-8701, CVE-2016-8702, and CVE-2016-8703.
- http://potrace.sourceforge.net/ChangeLog
- http://potrace.sourceforge.net/ChangeLog
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- 93778
- 93778
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiplesix-heap-based-buffer-overflow-in-bm_readbody_bmp-bitmap_io-c/
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiplesix-heap-based-buffer-overflow-in-bm_readbody_bmp-bitmap_io-c/
Modified: 2024-11-21
CVE-2016-8700
Heap-based buffer overflow in the bm_readbody_bmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to have unspecified impact via a crafted BMP image, a different vulnerability than CVE-2016-8698, CVE-2016-8699, CVE-2016-8701, CVE-2016-8702, and CVE-2016-8703.
- http://potrace.sourceforge.net/ChangeLog
- http://potrace.sourceforge.net/ChangeLog
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- 93778
- 93778
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiplesix-heap-based-buffer-overflow-in-bm_readbody_bmp-bitmap_io-c/
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiplesix-heap-based-buffer-overflow-in-bm_readbody_bmp-bitmap_io-c/
Modified: 2024-11-21
CVE-2016-8701
Heap-based buffer overflow in the bm_readbody_bmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to have unspecified impact via a crafted BMP image, a different vulnerability than CVE-2016-8698, CVE-2016-8699, CVE-2016-8700, CVE-2016-8702, and CVE-2016-8703.
- http://potrace.sourceforge.net/ChangeLog
- http://potrace.sourceforge.net/ChangeLog
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- 93778
- 93778
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiplesix-heap-based-buffer-overflow-in-bm_readbody_bmp-bitmap_io-c/
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiplesix-heap-based-buffer-overflow-in-bm_readbody_bmp-bitmap_io-c/
Modified: 2024-11-21
CVE-2016-8702
Heap-based buffer overflow in the bm_readbody_bmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to have unspecified impact via a crafted BMP image, a different vulnerability than CVE-2016-8698, CVE-2016-8699, CVE-2016-8700, CVE-2016-8701, and CVE-2016-8703.
- http://potrace.sourceforge.net/ChangeLog
- http://potrace.sourceforge.net/ChangeLog
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- 93778
- 93778
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiplesix-heap-based-buffer-overflow-in-bm_readbody_bmp-bitmap_io-c/
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiplesix-heap-based-buffer-overflow-in-bm_readbody_bmp-bitmap_io-c/
Modified: 2024-11-21
CVE-2016-8703
Heap-based buffer overflow in the bm_readbody_bmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to have unspecified impact via a crafted BMP image, a different vulnerability than CVE-2016-8698, CVE-2016-8699, CVE-2016-8700, CVE-2016-8701, and CVE-2016-8702.
- http://potrace.sourceforge.net/ChangeLog
- http://potrace.sourceforge.net/ChangeLog
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20160818 potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- [oss-security] 20161015 Re: potrace: multiple crashes
- 93778
- 93778
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiplesix-heap-based-buffer-overflow-in-bm_readbody_bmp-bitmap_io-c/
- https://blogs.gentoo.org/ago/2016/08/08/potrace-multiplesix-heap-based-buffer-overflow-in-bm_readbody_bmp-bitmap_io-c/
Closed bugs
bedup is not working
Closed bugs
надо бы обновить до 5.5
Closed vulnerabilities
Modified: 2024-11-21
CVE-2015-2931
Incomplete blacklist vulnerability in includes/upload/UploadBase.php in MediaWiki before 1.19.24, 1.2x before 1.23.9, and 1.24.x before 1.24.2 allows remote attackers to inject arbitrary web script or HTML via an application/xml MIME type for a nested SVG with a data: URI.
- MDVSA-2015:200
- MDVSA-2015:200
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- 73477
- 73477
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- https://phabricator.wikimedia.org/T85850
- https://phabricator.wikimedia.org/T85850
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-2932
Incomplete blacklist vulnerability in MediaWiki before 1.19.24, 1.2x before 1.23.9, and 1.24.x before 1.24.2 allows remote attackers to inject arbitrary web script or HTML via an animated href XLink element.
- MDVSA-2015:200
- MDVSA-2015:200
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- 73477
- 73477
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- https://phabricator.wikimedia.org/T86711
- https://phabricator.wikimedia.org/T86711
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-2933
Cross-site scripting (XSS) vulnerability in the Html class in MediaWiki before 1.19.24, 1.2x before 1.23.9, and 1.24.x before 1.24.2 allows remote attackers to inject arbitrary web script or HTML via a LanguageConverter substitution string when using a language variant.
- MDVSA-2015:200
- MDVSA-2015:200
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- 73477
- 73477
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- https://phabricator.wikimedia.org/T73394
- https://phabricator.wikimedia.org/T73394
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-2934
MediaWiki before 1.19.24, 1.2x before 1.23.9, and 1.24.x before 1.24.2 does not properly handle when the Zend interpreter xml_parse function does not expand entities, which allows remote attackers to inject arbitrary web script or HTML via a crafted SVG file.
- MDVSA-2015:200
- MDVSA-2015:200
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- 73477
- 73477
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- https://phabricator.wikimedia.org/T88310
- https://phabricator.wikimedia.org/T88310
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-2935
MediaWiki before 1.19.24, 1.2x before 1.23.9, and 1.24.x before 1.24.2 allows remote attackers to bypass the SVG filtering and obtain sensitive user information via a mixed case @import in a style element in an SVG file, as demonstrated by "@imporT."
- MDVSA-2015:200
- MDVSA-2015:200
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- 73477
- 73477
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- https://phabricator.wikimedia.org/T85349
- https://phabricator.wikimedia.org/T85349
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-2937
MediaWiki before 1.19.24, 1.2x before 1.23.9, and 1.24.x before 1.24.2, when using HHVM or Zend PHP, allows remote attackers to cause a denial of service ("quadratic blowup" and memory consumption) via an XML file containing an entity declaration with long replacement text and many references to this entity, a different vulnerability than CVE-2015-2942.
- MDVSA-2015:200
- MDVSA-2015:200
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- 73477
- 73477
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- https://phabricator.wikimedia.org/T71210
- https://phabricator.wikimedia.org/T71210
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-2938
Cross-site scripting (XSS) vulnerability in MediaWiki before 1.19.24, 1.2x before 1.23.9, and 1.24.x before 1.24.2 allows remote attackers to inject arbitrary web script or HTML via a custom JavaScript file, which is not properly handled when previewing the file.
- MDVSA-2015:200
- MDVSA-2015:200
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- 73477
- 73477
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- https://phabricator.wikimedia.org/T85855
- https://phabricator.wikimedia.org/T85855
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-2941
Cross-site scripting (XSS) vulnerability in MediaWiki before 1.19.24, 1.2x before 1.23.9, and 1.24.x before 1.24.2, when using HHVM, allows remote attackers to inject arbitrary web script or HTML via an invalid parameter in a wddx format request to api.php, which is not properly handled in an error message, related to unsafe calls to wddx_serialize_value.
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- 73477
- 73477
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- https://phabricator.wikimedia.org/T85851
- https://phabricator.wikimedia.org/T85851
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-2942
MediaWiki before 1.19.24, 1.2x before 1.23.9, and 1.24.x before 1.24.2, when using HHVM, allows remote attackers to cause a denial of service (CPU and memory consumption) via a large number of nested entity references in an (1) SVG file or (2) XMP metadata in a PDF file, aka a "billion laughs attack," a different vulnerability than CVE-2015-2937.
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150331 CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- [oss-security] 20150407 Re: CVE request: MediaWiki 1.24.2/1.23.9/1.19.24
- 73477
- 73477
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- [MediaWiki-announce] 20150331 MediaWiki Security and Maintenance Releases: 1.19.24, 1.23.9, and 1.24.2
- https://phabricator.wikimedia.org/T85848
- https://phabricator.wikimedia.org/T85848
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-6727
The Special:DeletedContributions page in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2 allows remote attackers to determine if an IP is autoblocked via the "Change block" text.
- FEDORA-2015-13920
- FEDORA-2015-13920
- [oss-security] 20150812 CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150812 CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150827 Re: CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150827 Re: CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- https://github.com/wikimedia/mediawiki/commit/5faabfa1bbf65536ea36108887040198afcb3c82
- https://github.com/wikimedia/mediawiki/commit/5faabfa1bbf65536ea36108887040198afcb3c82
- [MediaWiki-announce] 20150810 MediaWiki Security and Maintenance Releases: 1.25.2, 1.24.3, 1.23.10
- [MediaWiki-announce] 20150810 MediaWiki Security and Maintenance Releases: 1.25.2, 1.24.3, 1.23.10
- https://phabricator.wikimedia.org/T106893
- https://phabricator.wikimedia.org/T106893
Modified: 2024-11-21
CVE-2015-6728
The ApiBase::getWatchlistUser function in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2 does not perform token comparison in constant time, which allows remote attackers to guess the watchlist token and bypass CSRF protection via a timing attack.
- FEDORA-2015-13920
- FEDORA-2015-13920
- [oss-security] 20150812 CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150812 CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150827 Re: CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150827 Re: CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- 76334
- 76334
- [MediaWiki-announce] 20150810 MediaWiki Security and Maintenance Releases: 1.25.2, 1.24.3, 1.23.10
- [MediaWiki-announce] 20150810 MediaWiki Security and Maintenance Releases: 1.25.2, 1.24.3, 1.23.10
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-6729
Cross-site scripting (XSS) vulnerability in thumb.php in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2 allows remote attackers to inject arbitrary web script or HTML via the rel404 parameter, which is not properly handled in an error page.
- FEDORA-2015-13920
- FEDORA-2015-13920
- [oss-security] 20150812 CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150812 CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150827 Re: CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150827 Re: CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- 76334
- 76334
- [MediaWiki-announce] 20150810 MediaWiki Security and Maintenance Releases: 1.25.2, 1.24.3, 1.23.10
- [MediaWiki-announce] 20150810 MediaWiki Security and Maintenance Releases: 1.25.2, 1.24.3, 1.23.10
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-6730
Cross-site scripting (XSS) vulnerability in thumb.php in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2 allows remote attackers to inject arbitrary web script or HTML via the f parameter, which is not properly handled in an error page, related to "ForeignAPI images."
- FEDORA-2015-13920
- FEDORA-2015-13920
- [oss-security] 20150812 CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150812 CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150827 Re: CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150827 Re: CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- 76334
- 76334
- [MediaWiki-announce] 20150810 MediaWiki Security and Maintenance Releases: 1.25.2, 1.24.3, 1.23.10
- [MediaWiki-announce] 20150810 MediaWiki Security and Maintenance Releases: 1.25.2, 1.24.3, 1.23.10
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-6733
GeSHi, as used in the SyntaxHighlight_GeSHi extension and MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2, allows remote attackers to cause a denial of service (resource consumption) via unspecified vectors.
- FEDORA-2015-13920
- FEDORA-2015-13920
- [oss-security] 20150812 CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150812 CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150827 Re: CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150827 Re: CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- 76361
- 76361
- [MediaWiki-announce] 20150810 MediaWiki Security and Maintenance Releases: 1.25.2, 1.24.3, 1.23.10
- [MediaWiki-announce] 20150810 MediaWiki Security and Maintenance Releases: 1.25.2, 1.24.3, 1.23.10
- https://phabricator.wikimedia.org/T101608
- https://phabricator.wikimedia.org/T101608
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-6734
Cross-site scripting (XSS) vulnerability in contrib/cssgen.php in the GeSHi, as used in the SyntaxHighlight_GeSHi extension and MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
- FEDORA-2015-13920
- FEDORA-2015-13920
- [oss-security] 20150812 CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150812 CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150827 Re: CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- [oss-security] 20150827 Re: CVE Request: MediaWiki 1.25.2, 1.24.3, 1.23.10
- 76361
- 76361
- [MediaWiki-announce] 20150810 MediaWiki Security and Maintenance Releases: 1.25.2, 1.24.3, 1.23.10
- [MediaWiki-announce] 20150810 MediaWiki Security and Maintenance Releases: 1.25.2, 1.24.3, 1.23.10
- https://phabricator.wikimedia.org/T108198
- https://phabricator.wikimedia.org/T108198
- GLSA-201510-05
- GLSA-201510-05
Modified: 2024-11-21
CVE-2015-8001
The chunked upload API (ApiUpload) in MediaWiki before 1.23.11, 1.24.x before 1.24.4, and 1.25.x before 1.25.3 does not restrict the uploaded data to the claimed file size, which allows remote authenticated users to cause a denial of service via a chunk that exceeds the file size.
Modified: 2024-11-21
CVE-2015-8002
The chunked upload API (ApiUpload) in MediaWiki before 1.23.11, 1.24.x before 1.24.4, and 1.25.x before 1.25.3 allows remote authenticated users to cause a denial of service (disk consumption) via a file upload using one byte chunks.
Modified: 2024-11-21
CVE-2015-8003
MediaWiki before 1.23.11, 1.24.x before 1.24.4, and 1.25.x before 1.25.3 does not throttle file uploads, which allows remote authenticated users to have unspecified impact via multiple file uploads.
Modified: 2024-11-21
CVE-2015-8004
MediaWiki before 1.23.11, 1.24.x before 1.24.4, and 1.25.x before 1.25.3 does not properly restrict access to revisions, which allows remote authenticated users with the viewsuppressed user right to remove revision suppressions via a crafted revisiondelete action, which returns a valid a change form.
Modified: 2024-11-21
CVE-2015-8005
MediaWiki before 1.23.11, 1.24.x before 1.24.4, and 1.25.x before 1.25.3 uses the thumbnail ImageMagick command line argument, which allows remote attackers to obtain the installation path by reading the metadata of a PNG thumbnail file.
Modified: 2024-11-21
CVE-2015-8009
The MWOAuthDataStore::lookup_token function in Extension:OAuth for MediaWiki 1.25.x before 1.25.3, 1.24.x before 1.24.4, and before 1.23.11 does not properly validate the signature when checking the authorization signature, which allows remote registered Consumers to use another Consumer's credentials by leveraging knowledge of the credentials.