ALT-BU-2018-3334-1
Branch sisyphus update bulletin.
Closed vulnerabilities
BDU:2020-01814
Уязвимость функции open_envvar инструмента для настройки использования пользовательских приложений по умолчанию xdg-open, позволяющая нарушителю получить несанкционированный доступ к информации и нарушить ее целостность и доступность
Modified: 2024-11-21
CVE-2017-18266
The open_envvar function in xdg-open in xdg-utils before 1.1.3 does not validate strings before launching the program specified by the BROWSER environment variable, which might allow remote attackers to conduct argument-injection attacks via a crafted URL, as demonstrated by %s in this environment variable.
- https://bugs.freedesktop.org/show_bug.cgi?id=103807
- https://bugs.freedesktop.org/show_bug.cgi?id=103807
- https://cgit.freedesktop.org/xdg/xdg-utils/commit/?id=5647afb35e4bcba2060148e1a2a47bc43cc240f2
- https://cgit.freedesktop.org/xdg/xdg-utils/commit/?id=5647afb35e4bcba2060148e1a2a47bc43cc240f2
- https://cgit.freedesktop.org/xdg/xdg-utils/commit/?id=ce802d71c3466d1dbb24f2fe9b6db82a1f899bcb
- https://cgit.freedesktop.org/xdg/xdg-utils/commit/?id=ce802d71c3466d1dbb24f2fe9b6db82a1f899bcb
- https://cgit.freedesktop.org/xdg/xdg-utils/tree/ChangeLog
- https://cgit.freedesktop.org/xdg/xdg-utils/tree/ChangeLog
- [debian-lts-announce] 20180525 [SECURITY] [DLA 1384-1] xdg-utils security update
- [debian-lts-announce] 20180525 [SECURITY] [DLA 1384-1] xdg-utils security update
- USN-3650-1
- USN-3650-1
- DSA-4211
- DSA-4211
Closed vulnerabilities
BDU:2019-02430
Уязвимость браузера Google Chrome, связанная с записью данных за границами буфера в памяти, позволяющая нарушителю выполнить произвольный код
BDU:2019-04035
Уязвимость компонента API расширения Debugger браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
BDU:2019-04388
Уязвимость компонента Media Cache браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
BDU:2019-04389
Уязвимость обработчика PDF-содержимого PDFium браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
BDU:2019-04390
Уязвимость механизма отображения веб-страниц Blink браузера Google Chrome, позволяющая нарушителю повысить свои привилегии
BDU:2019-04391
Уязвимость обработчика JavaScript-сценариев V8 браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
BDU:2019-04392
Уязвимость механизма отображения веб-страниц Blink браузера Google Chrome, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2019-04393
Уязвимость компонента ReadableStreams механизма отображения веб-страниц Blink браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
BDU:2019-04394
Уязвимость реализации протокола WebUSB браузера Google Chrome, позволяющая нарушителю обойти ограничения безопасности
BDU:2019-04395
Уязвимость библиотеки Skia браузеров Firefox ESR, Firefox, Google Chrome, позволяющая нарушителю записать произвольные файлы в файловую систему устройства
BDU:2019-04396
Уязвимость встроенной базы данных IndexDB браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
BDU:2019-04397
Уязвимость реализации технологии WebRTC браузера Google Chrome, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2019-04398
Уязвимость реализации технологии WebRTC браузера Google Chrome, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2019-04399
Уязвимость компонента WebAssembly браузера Google Chrome, позволяющая нарушителю выполнить произвольный код
BDU:2019-04400
Уязвимость реализации технологии WebRTC браузера Google Chrome, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
BDU:2019-04427
Уязвимость браузера Google Chrome, связанная с неправильной обработкой данных, позволяющая нарушителю подменить содержимое в Omnibox (URL)
BDU:2019-04428
Уязвимость модуля отображения Blink браузера Google Chrome, позволяющая нарушителю обойти политику отсутствия ссылок и раскрыть защищаемую информацию
BDU:2019-04429
Уязвимость модуля отображения Blink браузера Google Chrome, позволяющая нарушителю выполнить подделку домена
BDU:2019-04430
Уязвимость браузерного ядра V8 браузера Google Chrome, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2019-04431
Уязвимость реализации технологии API CSS Paint браузера Google Chrome, позволяющая нарушителю раскрыть защищаемую информацию
BDU:2019-04432
Уязвимость браузера Google Chrome, существующая из-за недостаточной проверки входных данных, позволяющая нарушителю обойти ограничения навигации
BDU:2019-04433
Уязвимость в chrome.debugger API (DevTools) браузера Google Chrome, позволяющая нарушителю убедить пользователя установить вредоносное расширение и выполнить произвольный код
BDU:2019-04434
Уязвимость фильтра изображений библиотеки Skia браузера Google Chrome, позволяющая нарушителю
BDU:2019-04435
Уязвимость компонента V8 браузера Google Chrome, позволяющая нарушителю раскрыть защищаемую информацию
BDU:2019-04436
Уязвимость компонента V8 браузера Google Chrome, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2019-04437
Уязвимость компонента PDFium браузера Google Chrome, позволяющая нарушителю выполнить запись за границами буфера в памяти
BDU:2019-04438
Уязвимость браузера Google Chrome, существющая из-за непринятия мер по защите структуры веб-страницы, позволяющая нарушителю оказать воздействие на конфиденциальность и целостность защищаемой информации
BDU:2019-04439
Уязвимость браузера Google Chrome, связанная с отсутствием защиты служебных данных, позволяющая нарушителю раскрыть защищаемую информацию
BDU:2019-04440
Уязвимость браузера Google Chrome, существующая из-за неприятия мер по нейтрализации последовательностей CRLF, позволяющая нарушителю обойти ограничения навигации
Modified: 2024-11-21
CVE-2018-6118
A double-eviction in the Incognito mode cache that lead to a user-after-free in cache in Google Chrome prior to 66.0.3359.139 allowed a remote attacker who had compromised the renderer process to execute arbitrary code via a crafted HTML page.
Modified: 2024-11-21
CVE-2018-6120
An integer overflow that could lead to an attacker-controlled heap out-of-bounds write in PDFium in Google Chrome prior to 66.0.3359.170 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted PDF file.
- 104143
- 104143
- RHSA-2018:1446
- RHSA-2018:1446
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop.html
- https://crbug.com/833721
- https://crbug.com/833721
- GLSA-201805-06
- GLSA-201805-06
- DSA-4237
- DSA-4237
Modified: 2024-11-21
CVE-2018-6121
Insufficient validation of input in Blink in Google Chrome prior to 66.0.3359.170 allowed a remote attacker to perform privilege escalation via a crafted HTML page.
Modified: 2024-11-21
CVE-2018-6122
Type confusion in WebAssembly in Google Chrome prior to 66.0.3359.139 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Modified: 2024-11-21
CVE-2018-6123
A use after free in Blink in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
- 104309
- 104309
- 1041014
- 1041014
- RHSA-2018:1815
- RHSA-2018:1815
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/835639
- https://crbug.com/835639
- DSA-4237
- DSA-4237
Modified: 2024-11-21
CVE-2018-6124
Type confusion in ReadableStreams in Blink in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to potentially exploit object corruption via a crafted HTML page.
- 104309
- 104309
- 1041014
- 1041014
- RHSA-2018:1815
- RHSA-2018:1815
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/840320
- https://crbug.com/840320
- DSA-4237
- DSA-4237
Modified: 2024-11-21
CVE-2018-6125
Insufficient policy enforcement in USB in Google Chrome on Windows prior to 67.0.3396.62 allowed a remote attacker to obtain potentially sensitive information via a crafted HTML page.
Modified: 2024-11-21
CVE-2018-6126
A precision error in Skia in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page.
- 104309
- 104309
- 104411
- 104411
- 1041014
- 1041014
- 1041046
- 1041046
- RHSA-2018:1815
- RHSA-2018:1815
- RHSA-2018:2112
- RHSA-2018:2112
- RHSA-2018:2113
- RHSA-2018:2113
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/844457
- https://crbug.com/844457
- GLSA-201810-01
- GLSA-201810-01
- DSA-4220
- DSA-4220
- DSA-4237
- DSA-4237
- 45098
- 45098
Modified: 2024-11-21
CVE-2018-6127
Early free of object in use in IndexDB in Google Chrome prior to 67.0.3396.62 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
- 104309
- 104309
- 1041014
- 1041014
- RHSA-2018:1815
- RHSA-2018:1815
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/842990
- https://crbug.com/842990
- DSA-4237
- DSA-4237
Modified: 2024-11-21
CVE-2018-6128
Incorrect URL parsing in WebKit in Google Chrome on iOS prior to 67.0.3396.62 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
Modified: 2024-11-21
CVE-2018-6129
Out of bounds array access in WebRTC in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.
Modified: 2024-11-21
CVE-2018-6130
Incorrect handling of object lifetimes in WebRTC in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page.
Modified: 2024-11-21
CVE-2018-6131
Object lifecycle issue in WebAssembly in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
Modified: 2024-11-21
CVE-2018-6132
Uninitialized data in WebRTC in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted video file.
Modified: 2024-11-21
CVE-2018-6133
Incorrect handling of confusable characters in URL Formatter in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
- 104309
- 104309
- 1041014
- 1041014
- RHSA-2018:1815
- RHSA-2018:1815
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/817247
- https://crbug.com/817247
- DSA-4237
- DSA-4237
Modified: 2024-11-21
CVE-2018-6134
Information leak in Blink in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to bypass no-referrer policy via a crafted HTML page.
Modified: 2024-11-21
CVE-2018-6135
Lack of clearing the previous site before loading alerts from a new one in Blink in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
- 104309
- 104309
- 1041014
- 1041014
- RHSA-2018:1815
- RHSA-2018:1815
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/823353
- https://crbug.com/823353
- DSA-4237
- DSA-4237
Modified: 2024-11-21
CVE-2018-6136
Missing type check in V8 in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
Modified: 2024-11-21
CVE-2018-6137
CSS Paint API in Blink in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
- 104309
- 104309
- 1041014
- 1041014
- RHSA-2018:1815
- RHSA-2018:1815
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/835589
- https://crbug.com/835589
- DSA-4237
- DSA-4237
Modified: 2024-11-21
CVE-2018-6138
Insufficient policy enforcement in Extensions API in Google Chrome prior to 67.0.3396.62 allowed an attacker who convinced a user to install a malicious extension to bypass navigation restrictions via a crafted Chrome Extension.
Modified: 2024-11-21
CVE-2018-6139
Insufficient target checks on the chrome.debugger API in DevTools in Google Chrome prior to 67.0.3396.62 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code via a crafted Chrome Extension.
- 104309
- 104309
- 1041014
- 1041014
- RHSA-2018:1815
- RHSA-2018:1815
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/805224
- https://crbug.com/805224
- DSA-4237
- DSA-4237
Modified: 2024-11-21
CVE-2018-6140
Allowing the chrome.debugger API to attach to Web UI pages in DevTools in Google Chrome prior to 67.0.3396.62 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code via a crafted Chrome Extension.
- 104309
- 104309
- 1041014
- 1041014
- RHSA-2018:1815
- RHSA-2018:1815
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/798222
- https://crbug.com/798222
- DSA-4237
- DSA-4237
Modified: 2024-11-21
CVE-2018-6141
Insufficient validation of an image filter in Skia in Google Chrome prior to 67.0.3396.62 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory read via a crafted HTML page.
- 104309
- 104309
- 1041014
- 1041014
- RHSA-2018:1815
- RHSA-2018:1815
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/796107
- https://crbug.com/796107
- DSA-4237
- DSA-4237
Modified: 2024-11-21
CVE-2018-6142
Array bounds check failure in V8 in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to perform an out of bounds memory read via a crafted PDF file.
Modified: 2024-11-21
CVE-2018-6143
Insufficient validation in V8 in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
- 104309
- 104309
- 1041014
- 1041014
- RHSA-2018:1815
- RHSA-2018:1815
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/843022
- https://crbug.com/843022
- DSA-4237
- DSA-4237
Modified: 2024-11-21
CVE-2018-6144
Off-by-one error in PDFium in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to perform an out of bounds memory write via a crafted PDF file.
- 104309
- 104309
- 1041014
- 1041014
- RHSA-2018:1815
- RHSA-2018:1815
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/828049
- https://crbug.com/828049
- DSA-4237
- DSA-4237
Modified: 2024-11-21
CVE-2018-6145
Insufficient data validation in HTML parser in Google Chrome prior to 67.0.3396.62 allowed a remote attacker to bypass same origin policy via a crafted HTML page.
Modified: 2024-11-21
CVE-2018-6147
Lack of secure text entry mode in Browser UI in Google Chrome on Mac prior to 67.0.3396.62 allowed a local attacker to obtain potentially sensitive information from process memory via a local process.
- 104309
- 104309
- 1041014
- 1041014
- RHSA-2018:1815
- RHSA-2018:1815
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://chromereleases.googleblog.com/2018/05/stable-channel-update-for-desktop_58.html
- https://crbug.com/818133
- https://crbug.com/818133
- DSA-4237
- DSA-4237
Modified: 2024-11-21
CVE-2018-6148
Incorrect implementation in Content Security Policy in Google Chrome prior to 67.0.3396.79 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
Modified: 2024-11-21
CVE-2018-6149
Type confusion in JavaScript in Google Chrome prior to 67.0.3396.87 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page.
Closed bugs
update mysqldiff to 0.60
Closed vulnerabilities
Modified: 2024-11-21
CVE-2018-1000168
nghttp2 version >= 1.10.0 and nghttp2 <= v1.31.0 contains an Improper Input Validation CWE-20 vulnerability in ALTSVC frame handling that can result in segmentation fault leading to denial of service. This attack appears to be exploitable via network client. This vulnerability appears to have been fixed in >= 1.31.1.
- 103952
- 103952
- RHSA-2019:0366
- RHSA-2019:0366
- RHSA-2019:0367
- RHSA-2019:0367
- [debian-lts-announce] 20211017 [SECURITY] [DLA 2786-1] nghttp2 security update
- [debian-lts-announce] 20211017 [SECURITY] [DLA 2786-1] nghttp2 security update
- https://nghttp2.org/blog/2018/04/12/nghttp2-v1-31-1/
- https://nghttp2.org/blog/2018/04/12/nghttp2-v1-31-1/
- https://nodejs.org/en/blog/vulnerability/june-2018-security-releases/
- https://nodejs.org/en/blog/vulnerability/june-2018-security-releases/
Modified: 2024-11-21
CVE-2018-7161
All versions of Node.js 8.x, 9.x, and 10.x are vulnerable and the severity is HIGH. An attacker can cause a denial of service (DoS) by causing a node server providing an http2 server to crash. This can be accomplished by interacting with the http2 server in a manner that triggers a cleanup bug where objects are used in native code after they are no longer available. This has been addressed by updating the http2 implementation.
Modified: 2024-11-21
CVE-2018-7167
Calling Buffer.fill() or Buffer.alloc() with some parameters can lead to a hang which could result in a Denial of Service. In order to address this vulnerability, the implementations of Buffer.alloc() and Buffer.fill() were updated so that they zero fill instead of hanging in these cases. All versions of Node.js 6.x (LTS "Boron"), 8.x (LTS "Carbon"), and 9.x are vulnerable. All versions of Node.js 10.x (Current) are NOT vulnerable.
Closed bugs
passwd without username changes password for another user under su -
Не работает удаление пароля командой passwd -d