Buffer Over-read in Apple Inc. products - CVE-2016-2176

 

Buffer Over-read in Apple Inc. products - CVE-2016-2176

Published: September 23, 2016 / Updated: January 13, 2017


Vulnerability identifier: #VU642
CSH Severity: Low
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2016-2176
CWE-ID: CWE-126
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote to cause buffer over-read on the target system.

The weakness exists due to overread in applications using the X509_NAME_oneline() function on EBCDIC systems. The vulnerability leads to arbitrary stack data return to the buffer.

Successful exploitation of the weakness results in buffer over-read on the vulnerable system.

Affected software

Oracle Exalogic Infrastructure
OpenSSL
Oracle VM VirtualBox
Oracle Agile Engineering Data Management
Primavera P6 Professional Project Management
SnapDrive for Unix
SnapDrive for Windows
Oracle Commerce Guided Search
Oracle E-Business Suite
PeopleSoft Enterprise PeopleTools
Oracle Solaris
macOS
Gentoo Linux
Slackware Linux
Oracle Access Manager
openssl (Alpine package)
Data ONTAP operating in 7-Mode
dev-libs/openssl

How to mitigate CVE-2016-2176

Update 1.0.1 to 1.0.1t.
Update 1.0.2 to 1.0.2h.

openssl (Alpine package) - update to 1.0.2h-r3
SnapDrive for Unix - update to 5.3.1
SnapDrive for Windows - update to 7.1.4
Data ONTAP operating in 7-Mode - update to 8.2.5
dev-libs/openssl - update to 1.0.2j

External References

Related Security Bulletins