Buffer Over-read in Apple Inc. products - CVE-2016-2176
Published: September 23, 2016 / Updated: January 13, 2017
Vulnerability identifier: #VU642
CSH Severity: Low
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2016-2176
CWE-ID: CWE-126
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote to cause buffer over-read on the target system.
The weakness exists due to overread in applications using the X509_NAME_oneline() function on EBCDIC systems. The vulnerability leads to arbitrary stack data return to the buffer.
Successful exploitation of the weakness results in buffer over-read on the vulnerable system.
The weakness exists due to overread in applications using the X509_NAME_oneline() function on EBCDIC systems. The vulnerability leads to arbitrary stack data return to the buffer.
Successful exploitation of the weakness results in buffer over-read on the vulnerable system.
Affected software
Oracle Exalogic Infrastructure
OpenSSL
Oracle VM VirtualBox
Oracle Agile Engineering Data Management
Primavera P6 Professional Project Management
SnapDrive for Unix
SnapDrive for Windows
Oracle Commerce Guided Search
Oracle E-Business Suite
PeopleSoft Enterprise PeopleTools
Oracle Solaris
macOS
Gentoo Linux
Slackware Linux
Oracle Access Manager
openssl (Alpine package)
Data ONTAP operating in 7-Mode
dev-libs/openssl
OpenSSL
Oracle VM VirtualBox
Oracle Agile Engineering Data Management
Primavera P6 Professional Project Management
SnapDrive for Unix
SnapDrive for Windows
Oracle Commerce Guided Search
Oracle E-Business Suite
PeopleSoft Enterprise PeopleTools
Oracle Solaris
macOS
Gentoo Linux
Slackware Linux
Oracle Access Manager
openssl (Alpine package)
Data ONTAP operating in 7-Mode
dev-libs/openssl
How to mitigate CVE-2016-2176
Update 1.0.1 to 1.0.1t.
Update 1.0.2 to 1.0.2h.
Update 1.0.2 to 1.0.2h.
openssl (Alpine package) - update to 1.0.2h-r3
SnapDrive for Unix - update to 5.3.1
SnapDrive for Windows - update to 7.1.4
Data ONTAP operating in 7-Mode - update to 8.2.5
dev-libs/openssl - update to 1.0.2j
SnapDrive for Unix - update to 5.3.1
SnapDrive for Windows - update to 7.1.4
Data ONTAP operating in 7-Mode - update to 8.2.5
dev-libs/openssl - update to 1.0.2j
External References
- https://www.openssl.org/news/secadv/20160503.txt
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html
- http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html
- http://www.oracle.com/technetwork/security-advisory/cpuoct2016-2881722.html
- https://support.apple.com/cs-cz/HT206903