Ubuntu 14.04 LTS : oxide-qt vulnerabilities (USN-2345-1)

Ubuntu Security Notice (C) 2014-2017 Canonical, Inc. / NASL script (C) 2014-2017 Tenable Network Security, Inc.


Synopsis :

The remote Ubuntu host is missing one or more security-related
patches.

Description :

Multiple use-after-free issues were discovered in Blink. If a user
were tricked in to opening a specially crafted website, an attacker
could potentially exploit these to cause a denial of service via
renderer crash, or execute arbitrary code with the privileges of the
sandboxed render process. (CVE-2014-3178, CVE-2014-3190,
CVE-2014-3191, CVE-2014-3192)

Multiple security issues were discovered in Chromium. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to read uninitialized memory, cause a denial
of service via application crash or execute arbitrary code with the
privileges of the user invoking the program. (CVE-2014-3179,
CVE-2014-3200)

It was discovered that Chromium did not properly handle the
interaction of IPC and V8. If a user were tricked in to opening a
specially crafted website, an attacker could potentially exploit this
to execute arbitrary code with the privileges of the user invoking the
program. (CVE-2014-3188)

A use-after-free was discovered in the web workers implementation in
Chromium. If a user were tricked in to opening a specially crafted
website, an attacker could potentially exploit this to cause a denial
of service via applicatin crash or execute arbitrary code with the
privileges of the user invoking the program. (CVE-2014-3194)

It was discovered that V8 did not correctly handle JavaScript heap
allocations in some circumstances. If a user were tricked in to
opening a specially crafted website, an attacker could potentially
exploit this to steal sensitive information. (CVE-2014-3195)

It was discovered that Blink did not properly provide substitute data
for pages blocked by the XSS auditor. If a user were tricked in to
opening a specially crafter website, an attacker could potentially
exploit this to steal sensitive information. (CVE-2014-3197)

It was discovered that the wrap function for Event's in the V8
bindings in Blink produced an erroneous result in some circumstances.
If a user were tricked in to opening a specially crafted website, an
attacker could potentially exploit this to cause a denial of service
by stopping a worker process that was handling an Event object.
(CVE-2014-3199)

Multiple security issues were discovered in V8. If a user were tricked
in to opening a specially crafted website, an attacker could
potentially exploit these to read uninitialized memory, cause a denial
of service via renderer crash or execute arbitrary code with the
privileges of the sandboxed render process. (CVE-2014-7967).

Note that Tenable Network Security has extracted the preceding
description block directly from the Ubuntu security advisory. Tenable
has attempted to automatically clean and format it as much as possible
without introducing additional issues.

Solution :

Update the affected liboxideqtcore0, oxideqt-codecs and / or
oxideqt-codecs-extra packages.

Risk factor :

Critical / CVSS Base Score : 10.0
(CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C)
CVSS Temporal Score : 8.3
(CVSS2#E:F/RL:OF/RC:ND)
Public Exploit Available : true

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now