VARIoT IoT vulnerabilities database
| VAR-201902-0143 | CVE-2019-6595 | F5 BIG-IP Access Policy Manager Vulnerable to cross-site scripting |
CVSS V2: 4.3 CVSS V3: 6.1 Severity: MEDIUM |
Cross-site scripting (XSS) vulnerability in F5 BIG-IP Access Policy Manager (APM) 11.5.x and 11.6.x Admin Web UI.
An attacker may leverage this issue to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site. This may allow the attacker to steal cookie-based authentication credentials and launch other attacks.
F5 BIG-IP APM versions 4.6.0 and 11.5.1 through 11.6.3 are vulnerable
| VAR-201902-0923 | No CVE | Command execution vulnerability in Pfeiffer K2 wireless router |
CVSS V2: 6.5 CVSS V3: - Severity: MEDIUM |
The Fixon K2 wireless router is a wireless router for home use.
The Fidelity K2 wireless router has a command execution vulnerability. The vulnerability stems from the failure to filter the two parameters timeRebootEnablestatus and timeRebootrange. Attackers can use this vulnerability to execute arbitrary commands.
| VAR-201902-0929 | No CVE | DoS Vulnerability in JP1/Base |
CVSS V2: - CVSS V3: - Severity: - |
A DoS Vulnerability was found in JP1/Base.An attacker may conduct denial-of-service attacks.
| VAR-201902-0854 | CVE-2018-20033 | FlexNet Publisher Buffer error vulnerability |
CVSS V2: 7.5 CVSS V3: 9.8 Severity: CRITICAL |
A Remote Code Execution vulnerability in lmgrd and vendor daemon components of FlexNet Publisher version 11.16.1.0 and earlier could allow a remote attacker to corrupt the memory by allocating / deallocating memory, loading lmgrd or the vendor daemon and causing the heartbeat between lmgrd and the vendor daemon to stop. This would force the vendor daemon to shut down. No exploit of this vulnerability has been demonstrated. FlexNet Publisher Contains a buffer error vulnerability.Information is obtained, information is altered, and service operation is disrupted (DoS) There is a possibility of being put into a state. Schneider Electric Floating License Manager is prone to multiple security vulnerabilities
Attackers can exploit these issues to shut down the affected device, denying service to legitimate users.
Floating License Manager version 2.3.0.0 and prior are vulnerable
| VAR-201902-0499 | CVE-2018-13913 | plural Snapdragon Vulnerability related to array index verification in products |
CVSS V2: 4.6 CVSS V3: 7.8 Severity: HIGH |
Improper validation of array index can lead to unauthorized access while processing debugFS in Snapdragon Auto, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in version MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCS605, SD 210/SD 212/SD 205, SD 425, SD 439 / SD 429, SD 615/16/SD 415, SD 625, SD 636, SD 650/52, SD 712 / SD 710 / SD 670, SD 820A, SD 835, SD 845 / SD 850, SD 855, SDA660, SDM439, SDM630, SDM660, SDX20, SDX24. plural Snapdragon The product contains a vulnerability related to array index validation.Information is obtained, information is altered, and service operation is disrupted (DoS) There is a possibility of being put into a state. QualcommMDM9206 and other products are products of Qualcomm. The MDM9206 is a central processing unit (CPU) product. The SDX24 is a modem. The SD425 is a central processing unit (CPU) product. An unauthorized access vulnerability exists in Display in several Qualcomm products due to a program failing to properly validate an array index that an attacker could use to gain unauthorized access
| VAR-201902-0391 | CVE-2019-9125 | D-Link DIR-878 Device buffer error vulnerability |
CVSS V2: 7.5 CVSS V3: 9.8 Severity: CRITICAL |
An issue was discovered on D-Link DIR-878 1.12B01 devices. Because strncpy is misused, there is a stack-based buffer overflow vulnerability that does not require authentication via the HNAP_AUTH HTTP header. D-Link DIR-878 The device contains a buffer error vulnerability.Information is obtained, information is altered, and service operation is disrupted (DoS) There is a possibility of being put into a state. D-LinkDIR-878 is a wireless router from D-Link Corporation of Taiwan, China. A buffer overflow vulnerability exists in D-LinkDIR-8781.12B01. A remote attacker can exploit the vulnerability with the \342\200\230HNAP_AUTH\342\200\231 HTTP header to execute code
| VAR-201902-0071 | CVE-2019-9124 | D-Link DIR-878 Vulnerabilities related to certificate and password management in devices |
CVSS V2: 7.5 CVSS V3: 9.8 Severity: CRITICAL |
An issue was discovered on D-Link DIR-878 1.12B01 devices. At the /HNAP1 URI, an attacker can log in with a blank password. D-Link DIR-878 The device contains vulnerabilities related to certificate and password management.Information is obtained, information is altered, and service operation is disrupted (DoS) There is a possibility of being put into a state. D-LinkDIR-878 is a wireless router from D-Link Corporation of Taiwan, China. A security vulnerability exists in /HNAP1URI in D-LinkDIR-8781.12B01
| VAR-201902-0392 | CVE-2019-9126 | D-Link DIR-825 Information Disclosure Vulnerability |
CVSS V2: 5.0 CVSS V3: 7.5 Severity: HIGH |
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. There is an information disclosure vulnerability via requests for the router_info.xml document. This will reveal the PIN code, MAC address, routing table, firmware version, update time, QOS information, LAN information, and WLAN information of the device. D-Link DIR-825 Devices have vulnerabilities related to authorization, permissions, and access control.Information may be obtained. D-LinkDIR-825 is a router from D-Link Corporation of Taiwan, China
| VAR-201902-0069 | CVE-2019-9122 | D-Link DIR-825 Command injection vulnerability in devices |
CVSS V2: 6.5 CVSS V3: 8.8 Severity: HIGH |
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. They allow remote attackers to execute arbitrary commands via the ntp_server parameter in an ntp_sync.cgi POST request. D-Link DIR-825 The device contains a command injection vulnerability.Information is obtained, information is altered, and service operation is disrupted (DoS) There is a possibility of being put into a state. D-LinkDIR-825 is a router from D-Link Corporation of Taiwan, China. A security vulnerability exists in D-LinkDIR-8252.10
| VAR-201902-0070 | CVE-2019-9123 | D-Link DIR-825 Authentication vulnerabilities in devices |
CVSS V2: 7.5 CVSS V3: 9.8 Severity: CRITICAL |
An issue was discovered on D-Link DIR-825 Rev.B 2.10 devices. The "user" account has a blank password. D-Link DIR-825 The device contains an authentication vulnerability.Information is obtained, information is altered, and service operation is disrupted (DoS) There is a possibility of being put into a state. D-LinkDIR-825 is a router from D-Link Corporation of Taiwan, China. A security vulnerability exists in D-LinkDIR-825B2.10, which was caused by a null password used by the \342\200\230user\342\200\231 account. An attacker could use this vulnerability to log in to the router
| VAR-201902-0498 | CVE-2018-13912 | plural Snapdragon Product buffer error vulnerability |
CVSS V2: 2.1 CVSS V3: 5.5 Severity: MEDIUM |
Arbitrary write issue can occur when user provides kernel address in compat mode in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in MDM9150, MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, MSM8996AU, QCS605, SD 210/SD 212/SD 205, SD 425, SD 439 / SD 429, SD 625, SD 636, SD 712 / SD 710 / SD 670, SD 820, SD 820A, SD 835, SD 845 / SD 850, SDA660, SDM439, SDM630, SDM660, SDX20, SDX24. plural Snapdragon The product contains a buffer error vulnerability.Information may be tampered with
| VAR-201902-0063 | CVE-2019-9111 | Xiaomi perseus-p-oss MIX 3 Device integer overflow vulnerability |
CVSS V2: 7.1 CVSS V3: 5.5 Severity: MEDIUM |
The msm gpu driver for custom Linux kernels on the Xiaomi perseus-p-oss MIX 3 device through 2018-11-26 has an integer overflow and OOPS because of missing checks of the count argument in sde_evtlog_filter_write in drivers/gpu/drm/msm/sde_dbg.c. This is exploitable for a device crash via a syscall by a crafted application on a rooted device. Xiaomi perseus-p-oss MIX 3 The device contains an integer overflow vulnerability.Service operation interruption (DoS) There is a possibility of being put into a state. Xiaomiperseus-p-ossMIX3 is a smartphone from China Xiaomi Technology. An integer overflow vulnerability exists in the sde_evtlog_filter_write method of the drivers/gpu/drm/msm/sde_dbg.c file in Xiaomiperseus-p-ossMIX32018-11-26 and earlier. The vulnerability stems from the program failing to check the 'count' parameter. The attacker can Use this vulnerability to cause an OOPS error
| VAR-201902-0761 | CVE-2018-20785 | Neato Botvac Connected Vulnerabilities related to authorization, authority, and access control in devices |
CVSS V2: 4.4 CVSS V3: 7.4 Severity: HIGH |
Secure boot bypass and memory extraction can be achieved on Neato Botvac Connected 2.2.0 devices. During startup, the AM335x secure boot feature decrypts and executes firmware. Secure boot can be bypassed by starting with certain commands to the USB serial port. Although a power cycle occurs, this does not completely reset the chip: memory contents are still in place. Also, it restarts into a boot menu that enables XMODEM upload and execution of an unsigned QNX IFS system image, thereby completing the bypass of secure boot. Moreover, the attacker can craft custom IFS data and write it to unused memory to extract all memory contents that had previously been present. This includes the original firmware and sensitive information such as Wi-Fi credentials. Neato Botvac Connected The device contains vulnerabilities related to authorization, authority, and access control.Information is acquired, information is falsified, and denial of service (DoS) May be in a state. Neato Robotics Neato Botvac Connected is a cleaning robot from Neato Robotics in the United States. A security vulnerability exists in version 2.2.0 of Neato Robotics Neato Botvac Connected
| VAR-201902-0033 | CVE-2019-9064 | PHP Scripts Mall Cab Booking Script path traversal vulnerability |
CVSS V2: 5.0 CVSS V3: 5.3 Severity: MEDIUM |
PHP Scripts Mall Cab Booking Script 1.0.3 allows Directory Traversal into the parent directory of a jpg or png file
| VAR-201902-0876 | CVE-2019-9075 | GNU Binutils Buffer error vulnerability |
CVSS V2: 6.8 CVSS V3: 7.8 Severity: HIGH |
An issue was discovered in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.32. It is a heap-based buffer overflow in _bfd_archive_64_bit_slurp_armap in archive64.c. GNU Binutils Contains a buffer error vulnerability.Information is obtained, information is altered, and service operation is disrupted (DoS) There is a possibility of being put into a state. GNU Binutils is prone to multiple denial-of-service vulnerabilities and a heap-based buffer-overflow vulnerability
Attackers can exploit these issues to execute arbitrary code within the context of the affected application. Failed exploit attempts may result in denial-of-service conditions.
Binutils 2.32 is vulnerable; other versions may also be vulnerable. The program is primarily designed to handle object files in various formats and provides linkers, assemblers, and other tools for object files and archives. An attacker could exploit this vulnerability to execute code or cause a denial of service. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Gentoo Linux Security Advisory GLSA 202107-24
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
https://security.gentoo.org/
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Severity: Normal
Title: Binutils: Multiple vulnerabilities
Date: July 10, 2021
Bugs: #678806, #761957, #764170
ID: 202107-24
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Synopsis
========
Multiple vulnerabilities have been found in Binutils, the worst of
which could result in a Denial of Service condition.
Background
==========
The GNU Binutils are a collection of tools to create, modify and
analyse binary files.
Affected packages
=================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 sys-devel/binutils < 2.35.2 >= 2.35.2
Description
===========
Multiple vulnerabilities have been discovered in Binutils. Please
review the CVE identifiers referenced below for details.
Impact
======
Please review the referenced CVE identifiers for details.
Workaround
==========
There is no known workaround at this time.
Resolution
==========
All Binutils users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=sys-devel/binutils-2.35.2"
References
==========
[ 1 ] CVE-2019-9070
https://nvd.nist.gov/vuln/detail/CVE-2019-9070
[ 2 ] CVE-2019-9071
https://nvd.nist.gov/vuln/detail/CVE-2019-9071
[ 3 ] CVE-2019-9072
https://nvd.nist.gov/vuln/detail/CVE-2019-9072
[ 4 ] CVE-2019-9073
https://nvd.nist.gov/vuln/detail/CVE-2019-9073
[ 5 ] CVE-2019-9074
https://nvd.nist.gov/vuln/detail/CVE-2019-9074
[ 6 ] CVE-2019-9075
https://nvd.nist.gov/vuln/detail/CVE-2019-9075
[ 7 ] CVE-2019-9076
https://nvd.nist.gov/vuln/detail/CVE-2019-9076
[ 8 ] CVE-2019-9077
https://nvd.nist.gov/vuln/detail/CVE-2019-9077
[ 9 ] CVE-2020-19599
https://nvd.nist.gov/vuln/detail/CVE-2020-19599
[ 10 ] CVE-2020-35448
https://nvd.nist.gov/vuln/detail/CVE-2020-35448
[ 11 ] CVE-2020-35493
https://nvd.nist.gov/vuln/detail/CVE-2020-35493
[ 12 ] CVE-2020-35494
https://nvd.nist.gov/vuln/detail/CVE-2020-35494
[ 13 ] CVE-2020-35495
https://nvd.nist.gov/vuln/detail/CVE-2020-35495
[ 14 ] CVE-2020-35496
https://nvd.nist.gov/vuln/detail/CVE-2020-35496
[ 15 ] CVE-2020-35507
https://nvd.nist.gov/vuln/detail/CVE-2020-35507
Availability
============
This GLSA and any updates to it are available for viewing at
the Gentoo Security Website:
https://security.gentoo.org/glsa/202107-24
Concerns?
=========
Security is a primary focus of Gentoo Linux and ensuring the
confidentiality and security of our users' machines is of utmost
importance to us. Any security concerns should be addressed to
security@gentoo.org or alternatively, you may file a bug at
https://bugs.gentoo.org.
License
=======
Copyright 2021 Gentoo Foundation, Inc; referenced text
belongs to its owner(s).
The contents of this document are licensed under the
Creative Commons - Attribution / Share Alike license.
https://creativecommons.org/licenses/by-sa/2.5
| VAR-201902-0881 | CVE-2019-9070 | GNU Binutils Vulnerable to out-of-bounds reading |
CVSS V2: 6.8 CVSS V3: 7.8 Severity: HIGH |
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. It is a heap-based buffer over-read in d_expression_1 in cp-demangle.c after many recursive calls. GNU Binutils Contains an out-of-bounds vulnerability.Information is obtained, information is altered, and service operation is disrupted (DoS) There is a possibility of being put into a state.
Attackers can exploit these issues to execute arbitrary code in the context of the affected application. Failed exploit attempts will result in denial-of-service conditions. The program is primarily designed to handle object files in various formats and provides linkers, assemblers, and other tools for object files and archives. libiberty is a collection of subroutines used by one of the GNU programs. Currently there is no information about this vulnerability, please keep an eye on CNNVD or vendor announcements. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Gentoo Linux Security Advisory GLSA 202107-24
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
https://security.gentoo.org/
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Severity: Normal
Title: Binutils: Multiple vulnerabilities
Date: July 10, 2021
Bugs: #678806, #761957, #764170
ID: 202107-24
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Synopsis
========
Multiple vulnerabilities have been found in Binutils, the worst of
which could result in a Denial of Service condition.
Background
==========
The GNU Binutils are a collection of tools to create, modify and
analyse binary files. Many of the files use BFD, the Binary File
Descriptor library, to do low-level manipulation.
Affected packages
=================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 sys-devel/binutils < 2.35.2 >= 2.35.2
Description
===========
Multiple vulnerabilities have been discovered in Binutils. Please
review the CVE identifiers referenced below for details.
Impact
======
Please review the referenced CVE identifiers for details.
Workaround
==========
There is no known workaround at this time.
Resolution
==========
All Binutils users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=sys-devel/binutils-2.35.2"
References
==========
[ 1 ] CVE-2019-9070
https://nvd.nist.gov/vuln/detail/CVE-2019-9070
[ 2 ] CVE-2019-9071
https://nvd.nist.gov/vuln/detail/CVE-2019-9071
[ 3 ] CVE-2019-9072
https://nvd.nist.gov/vuln/detail/CVE-2019-9072
[ 4 ] CVE-2019-9073
https://nvd.nist.gov/vuln/detail/CVE-2019-9073
[ 5 ] CVE-2019-9074
https://nvd.nist.gov/vuln/detail/CVE-2019-9074
[ 6 ] CVE-2019-9075
https://nvd.nist.gov/vuln/detail/CVE-2019-9075
[ 7 ] CVE-2019-9076
https://nvd.nist.gov/vuln/detail/CVE-2019-9076
[ 8 ] CVE-2019-9077
https://nvd.nist.gov/vuln/detail/CVE-2019-9077
[ 9 ] CVE-2020-19599
https://nvd.nist.gov/vuln/detail/CVE-2020-19599
[ 10 ] CVE-2020-35448
https://nvd.nist.gov/vuln/detail/CVE-2020-35448
[ 11 ] CVE-2020-35493
https://nvd.nist.gov/vuln/detail/CVE-2020-35493
[ 12 ] CVE-2020-35494
https://nvd.nist.gov/vuln/detail/CVE-2020-35494
[ 13 ] CVE-2020-35495
https://nvd.nist.gov/vuln/detail/CVE-2020-35495
[ 14 ] CVE-2020-35496
https://nvd.nist.gov/vuln/detail/CVE-2020-35496
[ 15 ] CVE-2020-35507
https://nvd.nist.gov/vuln/detail/CVE-2020-35507
Availability
============
This GLSA and any updates to it are available for viewing at
the Gentoo Security Website:
https://security.gentoo.org/glsa/202107-24
Concerns?
=========
Security is a primary focus of Gentoo Linux and ensuring the
confidentiality and security of our users' machines is of utmost
importance to us. Any security concerns should be addressed to
security@gentoo.org or alternatively, you may file a bug at
https://bugs.gentoo.org.
License
=======
Copyright 2021 Gentoo Foundation, Inc; referenced text
belongs to its owner(s).
The contents of this document are licensed under the
Creative Commons - Attribution / Share Alike license.
https://creativecommons.org/licenses/by-sa/2.5
. ==========================================================================
Ubuntu Security Notice USN-4326-1
April 08, 2020
libiberty vulnerabilities
==========================================================================
A security issue affects these releases of Ubuntu and its derivatives:
- Ubuntu 18.04 LTS
- Ubuntu 16.04 LTS
Summary:
Several security issues were fixed in libiberty.
Software Description:
- libiberty: library of utility functions used by GNU programs
Details:
It was discovered that libiberty incorrectly handled parsing certain
binaries. If a user or automated system were tricked into processing a
specially crafted binary, a remote attacker could use this issue to cause
libiberty to crash, resulting in a denial of service, or possibly execute
arbitrary code
Update instructions:
The problem can be corrected by updating your system to the following
package versions:
Ubuntu 18.04 LTS:
libiberty-dev 20170913-1ubuntu0.1
Ubuntu 16.04 LTS:
libiberty-dev 20160215-1ubuntu0.3
In general, a standard system update will make all the necessary changes.
References:
https://usn.ubuntu.com/4326-1
CVE-2018-12641, CVE-2018-12697, CVE-2018-12698, CVE-2018-12934,
CVE-2018-17794, CVE-2018-17985, CVE-2018-18483, CVE-2018-18484,
CVE-2018-18700, CVE-2018-18701, CVE-2018-9138, CVE-2019-14250,
CVE-2019-9070, CVE-2019-9071
Package Information:
https://launchpad.net/ubuntu/+source/libiberty/20170913-1ubuntu0.1
https://launchpad.net/ubuntu/+source/libiberty/20160215-1ubuntu0.3
| VAR-201902-0875 | CVE-2019-9077 | GNU Binutils Buffer error vulnerability |
CVSS V2: 6.8 CVSS V3: 7.8 Severity: HIGH |
An issue was discovered in GNU Binutils 2.32. It is a heap-based buffer overflow in process_mips_specific in readelf.c via a malformed MIPS option section. GNU Binutils Contains a buffer error vulnerability.Information is obtained, information is altered, and service operation is disrupted (DoS) There is a possibility of being put into a state. GNU Binutils is prone to a heap-based buffer-overflow vulnerability.
Attackers can exploit this issue to cause a denial-of-service condition, denying service to legitimate users. Given the nature of this issue, attackers may also be able to execute arbitrary code, but this has not been confirmed. The program is primarily designed to handle object files in various formats and provides linkers, assemblers, and other tools for object files and archives. - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Gentoo Linux Security Advisory GLSA 202107-24
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
https://security.gentoo.org/
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Severity: Normal
Title: Binutils: Multiple vulnerabilities
Date: July 10, 2021
Bugs: #678806, #761957, #764170
ID: 202107-24
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
Synopsis
========
Multiple vulnerabilities have been found in Binutils, the worst of
which could result in a Denial of Service condition.
Background
==========
The GNU Binutils are a collection of tools to create, modify and
analyse binary files. Many of the files use BFD, the Binary File
Descriptor library, to do low-level manipulation. Please
review the CVE identifiers referenced below for details.
Impact
======
Please review the referenced CVE identifiers for details.
Workaround
==========
There is no known workaround at this time.
Resolution
==========
All Binutils users should upgrade to the latest version:
# emerge --sync
# emerge --ask --oneshot --verbose ">=sys-devel/binutils-2.35.2"
References
==========
[ 1 ] CVE-2019-9070
https://nvd.nist.gov/vuln/detail/CVE-2019-9070
[ 2 ] CVE-2019-9071
https://nvd.nist.gov/vuln/detail/CVE-2019-9071
[ 3 ] CVE-2019-9072
https://nvd.nist.gov/vuln/detail/CVE-2019-9072
[ 4 ] CVE-2019-9073
https://nvd.nist.gov/vuln/detail/CVE-2019-9073
[ 5 ] CVE-2019-9074
https://nvd.nist.gov/vuln/detail/CVE-2019-9074
[ 6 ] CVE-2019-9075
https://nvd.nist.gov/vuln/detail/CVE-2019-9075
[ 7 ] CVE-2019-9076
https://nvd.nist.gov/vuln/detail/CVE-2019-9076
[ 8 ] CVE-2019-9077
https://nvd.nist.gov/vuln/detail/CVE-2019-9077
[ 9 ] CVE-2020-19599
https://nvd.nist.gov/vuln/detail/CVE-2020-19599
[ 10 ] CVE-2020-35448
https://nvd.nist.gov/vuln/detail/CVE-2020-35448
[ 11 ] CVE-2020-35493
https://nvd.nist.gov/vuln/detail/CVE-2020-35493
[ 12 ] CVE-2020-35494
https://nvd.nist.gov/vuln/detail/CVE-2020-35494
[ 13 ] CVE-2020-35495
https://nvd.nist.gov/vuln/detail/CVE-2020-35495
[ 14 ] CVE-2020-35496
https://nvd.nist.gov/vuln/detail/CVE-2020-35496
[ 15 ] CVE-2020-35507
https://nvd.nist.gov/vuln/detail/CVE-2020-35507
Availability
============
This GLSA and any updates to it are available for viewing at
the Gentoo Security Website:
https://security.gentoo.org/glsa/202107-24
Concerns?
=========
Security is a primary focus of Gentoo Linux and ensuring the
confidentiality and security of our users' machines is of utmost
importance to us. Any security concerns should be addressed to
security@gentoo.org or alternatively, you may file a bug at
https://bugs.gentoo.org.
License
=======
Copyright 2021 Gentoo Foundation, Inc; referenced text
belongs to its owner(s).
The contents of this document are licensed under the
Creative Commons - Attribution / Share Alike license.
https://creativecommons.org/licenses/by-sa/2.5
| VAR-201902-0306 | CVE-2019-7728 | Android for Bosch Smart Camera Application validation vulnerability |
CVSS V2: 5.1 CVSS V3: 7.5 Severity: HIGH |
An issue was discovered in the Bosch Smart Camera App before 1.3.1 for Android. Due to improperly implemented TLS certificate checks, a malicious actor could potentially succeed in executing a man-in-the-middle attack for some connections. (The Bosch Smart Home App is not affected. iOS Apps are not affected.). Android for Bosch Smart Camera The application contains a certificate validation vulnerability.Information is obtained, information is altered, and service operation is disrupted (DoS) There is a possibility of being put into a state. The vulnerability stems from the fact that the program does not correctly implement the check on the TLS certificate. A remote attacker could exploit this vulnerability to perform a man-in-the-middle attack, connect to an identity management backend system and potentially intercept and/or modify a user's Bosch-ID
| VAR-201902-0307 | CVE-2019-7729 | Android for Bosch Smart Camera Vulnerabilities related to authorization, authority, and access control in applications |
CVSS V2: 2.1 CVSS V3: 3.3 Severity: LOW |
An issue was discovered in the Bosch Smart Camera App before 1.3.1 for Android. Due to setting of insecure permissions, a malicious app could potentially succeed in retrieving video clips or still images that have been cached for clip sharing. (The Bosch Smart Home App is not affected. iOS Apps are not affected.). The vulnerability stems from the setting of insecure permissions. A local attacker could exploit this vulnerability to retrieve short videos and images that are cached for sharing
| VAR-201902-0883 | No CVE | KingSCADA 3.7 has a release and reuse vulnerability |
CVSS V2: 4.9 CVSS V3: - Severity: MEDIUM |
KingSCADA is a high-end configuration software developed by Beijing Yakong Technology Development Co., Ltd.
KingSCADA 3.7 has a release and reuse vulnerability. An attacker could use this vulnerability to cause a denial of service attack