ENISA EUVD · EUVD-2017-4595Official EUVD mapping0 linked advisory records.
Official EUVD record ↗BSI · German · WID-SEC-2025-0369IEEE WPA2: Mehrere SchwachstellenEin entfernter, anonymer Angreifer kann mehrere Schwachstellen in IEEE WPA2 ausnutzen, um Sicherheitsvorkehrungen zu umgehen.
Official advisory ↗BSI · German · WID-SEC-2025-0370Apple Mac OS: Mehrere SchwachstellenEin entfernter, anonymer Angreifer kann mehrere Schwachstelle in Apple Mac OS ausnutzen, um Code mit Kernel Privilegien auszuführen, Sicherheitsvorkehrungen zu umgehen, einen Denial of Service Angriff durchzuführen oder vertrauliche Daten einzusehen.
Official advisory ↗Canadian Centre for Cyber Security · English · AV18-110Apple security updatesApple has released a security update for Boot Camp 6.4.0 which addresses a Wi-Fi vulnerability which could allow a remote unauthenticated user to obtain sensitive information.
Affected products using Boot Camp 6.4.0:
MacBook (Late 2009 and later)
MacBook Pro (Mid 2010 and later)
MacBook Air (Late 2010 and later)
Mac mini (Mid 2010 and later)
iMac (Late 2009 and later)
Mac Pro (Mid 2010 and later)
CVE References: CVE-2017-13077, CVE-2017-13078, CVE-2017-13080
Official advisory ↗Canadian Centre for Cyber Security · English · AV18-094Android security bulletinNumber: AV18-094
Date: 12 June 2018
Purpose
The purpose of this advisory is to bring attention to an Android Security Bulletin for June 2018.
Assessment
The Android Security Bulletin addresses security updates for multiple vulnerabilities. Successful exploitation could result in remote code execution.
CVE References: CVE-2017-13077, CVE-2017-13227, CVE-2017-13230, CVE-2017-17558, CVE-2017-17806, CVE-2017-17807, CVE-2017-18155, CVE-2017-18156, CVE-2017-18157, CVE-2017-18158, CVE-2017-18158, CVE-2017-18159, CVE-2017-6290, CVE-2017-6292, CVE-2017-6294, CVE-2018-3569, CVE-2018-5146, CVE-2018-5829, CVE-2018-5830, CVE-2018-5831, CVE-2018-5834, CVE-2018-5835, CVE-2018-5854, CVE-2018-5884, CVE-2018-5885, CVE-2018-5891, CVE-2018-5892, CVE-2018-5894, CVE-2018-5896, CVE-2018-9339, CVE-2018-9340, CVE-2018-9341, CVE-2018-9344, CVE-2018-9345, CVE-2018-9346, CVE-2018-9347, CVE-2018-9348, CVE-2018-9355, CVE-2018-9356, CVE-2018-9357, CVE-2018-9358, CVE-2018-9359, CVE-2018-9360, CVE-201
Official advisory ↗Canadian Centre for Cyber Security · English · AV18-080Android security bulletin – May 2018Number: AV18-080
Date: 11 May 2018
Purpose
The purpose of this advisory is to bring attention to the Android Security Bulletin for May.
Assessment
The Android Security Bulletin addresses security updates for 23 vulnerabilities (2 Critical and 21 High). Successful exploitation could allow for a remote unauthenticated user to gain privilege escalation and allow remote code execution.
CVE References: CVE-2018-3562, CVE-2018-3565, CVE-2018-3578, CVE-2018-3580, CVE-2017-5715, CVE-2017-5754, CVE-2018-5840, CVE-2018-5841, CVE-2018-5845, CVE-2018-5846, CVE-2018-5850, CVE-2017-6289, CVE-2017-6293, CVE-2017-13077, CVE-2017-13309, CVE-2017-13310, CVE-2017-13311, CVE-2017-13312, CVE-2017-13313, CVE-2017-13314, CVE-2017-13315, CVE-2017-16643, CVE-2017-18154
Suggested Action
CCIRC recommends that system administrators check with their respected Android phone vendor and carrier when the update will be available and test and deploy the vendor-released updates to affected devices accordingly.
References:
Android Security Bulletin:
https://source.android.com/security/bulletin/2018-05-01
Official advisory ↗Canadian Centre for Cyber Security · English · AV18-012Oracle Critical Patch updatesE-2016-2550, CVE-2016-4449, CVE-2016-5385, CVE-2016-5387, CVE-2016-6302, CVE-2016-6303, CVE-2016-6304, CVE-2016-6305, CVE-2016-6306, CVE-2016-6307, CVE-2016-6308, CVE-2016-6309, CVE-2016-6814, CVE-2016-7052, CVE-2016-7055, CVE-2016-7977, CVE-2016-8735, CVE-2016-9878, CVE-2017-0781, CVE-2017-0782, CVE-2017-0783, CVE-2017-0785, CVE-2017-3730, CVE-2017-3731, CVE-2017-3732, CVE-2017-3733, CVE-2017-3735, CVE-2017-3736, CVE-2017-3737, CVE-2017-3738, CVE-2017-5461, CVE-2017-5645, CVE-2017-5664, CVE-2017-5715, CVE-2017-9072, CVE-2017-9798, CVE-2017-10068, CVE-2017-10262, CVE-2017-10273, CVE-2017-10282, CVE-2017-10301, CVE-2017-10352, CVE-2017-12617, CVE-2017-13077, CVE-2017-13078, CVE-2017-13079, CVE-2017-13080, CVE-2017-13081, CVE-2017-13082, CVE-2018-2560, CVE-2018-2561, CVE-2018-2562, CVE-2018-2564, CVE-2018-2565, CVE-2018-2566, CVE-2018-2567, CVE-2018-2568, CVE-2018-2569, CVE-2018-2570, CVE-2018-2571, CVE-2018-2573, CVE-2018-2574, CVE-2018-2575, CVE-2018-2576, CVE-2018-2577, CVE-2018-2578, CVE-2018-2579, CVE-2018-2580, CVE-2018-2581, CVE-2018-2582, CVE-2018-2583, CVE-2018-2584, CVE-2018-2585, CVE-2018-2586, CVE-2018-2588, CVE-2018-2589, CVE-2018-2590, CVE-2018-2591, CVE-2018-2592, CVE-2018-2593, CVE-2018-2594, CVE-2018-2595, CVE-2018-2596, CVE-2018-2597, CVE-2018-2599, CVE-2018-2600, CVE-2018-2601
Official advisory ↗Canadian Centre for Cyber Security · English · AV17-191Apple security updatesApple has released support articles regarding recent security vulnerabilities in their products and the relevant iOS, tvOS and AirPort Base Station.
AirPort Base Station Firmware Update 7.6.9
AirPort Base Station Firmware Update 7.7.9
iOS 11.2.1
tvOS 11.2.1
This update addresses vulnerabilities on the system listed above.
CVE Reference: CVE-2017-9417, CVE-2017-13077, CVE-2017-13078, CVE-2017-13080, CVE-2017-13903
Official advisory ↗Canadian Centre for Cyber Security · English · AV17-172Cisco security updateson Cross-Site Scripting Vulnerability
Cisco Immunet Antimalware Installer DLL Preloading Vulnerability
Cisco HyperFlex System Authenticated Information Disclosure Vulnerability
Cisco Firepower System Software Server Message Block Version 2 File Policy Bypass Vulnerability
Cisco ASA Next-Generation Firewall Services Local Management Filtering Bypass Vulnerability
Cisco FindIT Discovery Utility Insecure Library Loading Vulnerability
Cisco Email Security Appliance HTTP Response Splitting Vulnerability
Cisco Network Academy Packet Tracer DLL Preload Vulnerability
Cisco Meeting Server H.264 Decoding Denial of Service Vulnerability
CVE References: CVE-2017-13077,CVE-2017-13078,CVE-2017-13079,CVE-2017-13080,CVE-2017-13081,CVE-2017-13082,CVE-2017-13084,CVE-2017-13086,CVE-2017-13087,CVE-2017-13088,CVE-2017-12303,CVE-2017-12337,CVE-2017-12350,CVE-2017-12302,CVE-2017-12306,CVE-2017-12318,CVE-2017-12290,CVE-2017-12290,CVE-2017-12291,CVE-2017-12292,CVE-2017-12320,CVE-2017-12321,CVE-2017-12322,CVE-2017-12323,CVE-2017-12316,CVE-2017-12305,CVE-2017-12304,CVE-2017-12312,CVE-2017-12315,CVE-2017-12300,CVE-2017-12299,CVE-2017-12314,CVE-2017-12309,CVE-2017-12313,CVE-2017-12311
Suggested Action
CCIRC recommends that system administrators test and deploy the vendor-released updates to affected applications according
Official advisory ↗Canadian Centre for Cyber Security · English · AV17-167Apple security updates4 November 2017
Purpose
The purpose of this advisory is to bring attention to multiple Apple system security updates for iOS.
Assessment
Apple has released the following support article:
• HT208255 - iOS 11.1.1
This update addresses multiple vulnerabilities on the system listed above.
CVE Reference: CVE-2017-13849, CVE-2017-13799, CVE-2017-13852, CVE-2017-13844, CVE-2017-13805, CVE-2017-13804, CVE-2017-7113, CVE-2017-13783, CVE-2017-13784, CVE-2017-13785, CVE-2017-13788, CVE-2017-13791, CVE-2017-13792, CVE-2017-13793, CVE-2017-13794, CVE-2017-13795, CVE-2017-13796 , CVE-2017-13797 , CVE-2017-13798, CVE-2017-13802, CVE-2017-13803, CVE-2017-13077 , CVE-2017-13078, CVE-2017-13080
Suggested Action
CCIRC recommends that owner/operators test and deploy the vendor released updates or workarounds to affected platforms.
References:
https://support.apple.com/en-ca/HT208222
Official advisory ↗Canadian Centre for Cyber Security · English · AV17-161Apple security updates17-13015, CVE-2017-13016, CVE-2017-13017, CVE-2017-13018, CVE-2017-13019, CVE-2017-13020, CVE-2017-13021, CVE-2017-13022, CVE-2017-13023, CVE-2017-13024, CVE-2017-13025, CVE-2017-13026, CVE-2017-13027, CVE-2017-13028, CVE-2017-13029, CVE-2017-13030, CVE-2017-13031, CVE-2017-13032, CVE-2017-13033, CVE-2017-13034, CVE-2017-13035, CVE-2017-13036, CVE-2017-13037, CVE-2017-13038, CVE-2017-13039, CVE-2017-13040, CVE-2017-13041, CVE-2017-13042, CVE-2017-13043, CVE-2017-13044, CVE-2017-13045, CVE-2017-13046, CVE-2017-13047, CVE-2017-13048, CVE-2017-13049, CVE-2017-13050, CVE-2017-13051, CVE-2017-13052, CVE-2017-13053, CVE-2017-13054, CVE-2017-13055, CVE-2017-13077, CVE-2017-13078, CVE-2017-13080, CVE-2017-13687, CVE-2017-13688, CVE-2017-13689, CVE-2017-13690, CVE-2017-13725, CVE-2017-13782, CVE-2017-13783, CVE-2017-13784, CVE-2017-13785, CVE-2017-13786, CVE-2017-13788, CVE-2017-13789, CVE-2017-13790, CVE-2017-13791, CVE-2017-13792, CVE-2017-13793, CVE-2017-13794, CVE-2017-13795, CVE-2017-13796, CVE-2017-13798, CVE-2017-13799, CVE-2017-13800, CVE-2017-13801, CVE-2017-13802, CVE-2017-13803, CVE-2017-13804, CVE-2017-13805, CVE-2017-13807, CVE-2017-13808, CVE-2017-13809, CVE-2017-13810, CVE-2017-13811, CVE-2017-13812, CVE-2017-13813, CVE-2017-13814, CVE-2017-13815, CVE-2017-13816, CVE-2017-13817, CVE-2017
Official advisory ↗Canadian Centre for Cyber Security · English · AV17-162Cisco security updatesecution Vulnerability Affecting Multiple Cisco Products: September 2017
Cisco NX-OS Software TCP Netstack Denial of Service Vulnerability
Cisco Spark Hybrid Calendar Service Information Disclosure Vulnerability
Cisco AMP for Endpoints Static Key Vulnerability
Cisco Nexus Series Switches CLI Command Injection Vulnerability
CVE References: CVE-2017-3883, CVE-2017-12275, CVE-2017-12278, CVE-2017-12261, CVE-2017-12277, CVE-2017-12276, CVE-2017-12262, CVE-2017-12274, CVE-2017-12273, CVE-2017-12282, CVE-2017-12280, CVE-2017-12295, CVE-2017-12294, CVE-2017-12279, CVE-2017-12243, CVE-2017-12283, CVE-2017-12281, CVE-2017-12287, CVE-2017-6616, CVE-2017-13077, CVE-2017-13078, CVE-2017-9793, CVE-2017-9804, CVE-2017-12611, CVE-2015-0718, CVE-2017-12310, CVE-2017-12317, CVE-2017-6649.
Suggested Action
CCIRC recommends that system administrators test and deploy the vendor-released updates to affected applications accordingly.
References:
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20171018-aaavty
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20171101-wlc2
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20171101-wlc1
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-201711
Official advisory ↗Canadian Centre for Cyber Security · English · AV17-157Cisco security updatesCisco released multiple security updates to address vulnerabilities (medium to critical) in the following products.
Multiple Vulnerabilities in Wi-Fi Protected Access and Wi-Fi Protected Access II,
Cisco IOS XE Software Web Framework Cross-Site Scripting Vulnerability
Cisco IOS XE Software Verbose Debug Logging Information Disclosure Vulnerability
Cisco Expressway Series and Cisco TelePresence Video Communication Server REST API Denial of Service Vulnerability
Cisco Jabber for Windows Client Information Disclosure Vulnerability
Cisco Jabber Information Disclosure Vulnerability
Cisco Network Analysis Module Parameter Directory Traversal Arbitrary File Deletion Vulnerability,
Cisco NX-OS Software Python Parser Escape Vulnerability
Cisco SPA300 and SPA500 Series IP Phones Cross-Site Request Forgery Vulnerability,
Cisco Unified Contact Center Express Cross-Site Scripting Vulnerability,
Cisco WebEx Meeting Center Cross-Site Scripting Vulnerability
Cisco WebEx Meetings Server Denial of Service Vulnerability
Cisco WebEx Meetings Server Cross-Site Scripting Vulnerability
Cisco FXOS and NX-OS System Software Authentication, Authorization, and Accounting Denial of Service Vulnerability
Cisco Small Business SPA51x Series IP Phones SIP Denial of Service Vulnerability
Cisco Small Business SPA50x, SPA51x, and SPA52x Series IP Phones SIP Denial of Service Vulnerability,
Cisco Cloud Services Platform 2100 Unauthorized Access Vulnerability.
CVE References: CVE-2017-13077, CVE-2017-13078, CVE-2017-13079, CVE-2017-12272, CVE-2017-12289, CVE-2017-12287, CVE-2017-12284, CVE-2017-12286, CVE-2017-12285, CVE-2017-12301, CVE-2017-12271, CVE-2017-12288, CVE-2017-12298, CVE-2017-12293, CVE-2017-12296, CVE-2017-3883, CVE-2017-12259, CVE-2017-12260, CVE-2017-12251
Official advisory ↗Canadian Centre for Cyber Security · English · AL17-012Wi-Fi Protected Access II (WPA2) Handshake VulnerabilitiesCCIRC has become aware of multiple critical vulnerabilities in WPA2 handshake traffic. These vulnerabilities can be manipulated to induce nonce and session key reuse which could result in key reinstallation by a wireless access point or client. This could then enable arbitrary packet decryption and injection, TCP connection hijacking, HTTP content injection, or the replay of unicast, broadcast, and multicast frames.
As these vulnerabilities are in the Wi-Fi standard, they are not related to individual products or their implementation. However, the correct implementation of the WPA2 protocol is likely affected.
The WPA2 protocol is affected by the following vulnerabilities:
CVE-2017-13077: Reinstallation of the pairwise encryption key (PTK-TK) in the 4-way handshake.
CVE-2017-13078: Reinstallation of the group key (GTK) in the 4-way handshake.
CVE-2017-13079: Reinstallation of the integrity group key (IGTK) in the 4-way handshake.
CVE-2017-13080: Reinstallation of the group key (GTK) in the group key handshake.
CVE-2017-13081: Reinstallation of the integrity group key (IGTK) in the group key handshake.
CVE-2017-13082: Accepting a retransmitted Fast BSS Transition (FT) Reassociation Request and reinstalling the pairwise encryption key (PTK-TK) while processing it.
CVE-2017-13084: Reinstallation of the STK key in the PeerKey handshake.
CVE-2017-13086: Reinstallation of the Tunneled Direct-Link Setup (TDLS) PeerKey (TPK) key in the TDLS handshake.
CVE-2017-13087: Reinstallation of the group key (GTK) when processing a Wireless Network Management (WNM) Sleep Mode Response frame.
CVE-2017-13088: Reinstallation of the integrity group key (IGTK) when processing a Wireless Network management (WNM) Sleep Mode Response frame
Official advisory ↗CERT-FR · French · CERTFR-2022-AVI-267Multiples vulnérabilités dans Juniper Networks Junos SpaceCVE-2017-0902
Référence CVE CVE-2017-0903
https://www.cve.org/CVERecord?id=CVE-2017-0903
Référence CVE CVE-2017-1000050
https://www.cve.org/CVERecord?id=CVE-2017-1000050
Référence CVE CVE-2017-1000158
https://www.cve.org/CVERecord?id=CVE-2017-1000158
Référence CVE CVE-2017-10664
https://www.cve.org/CVERecord?id=CVE-2017-10664
Référence CVE CVE-2017-10784
https://www.cve.org/CVERecord?id=CVE-2017-10784
Référence CVE CVE-2017-11368
https://www.cve.org/CVERecord?id=CVE-2017-11368
Référence CVE CVE-2017-11671
https://www.cve.org/CVERecord?id=CVE-2017-11671
Référence CVE CVE-2017-12652
https://www.cve.org/CVERecord?id=CVE-2017-12652
Référence CVE CVE-2017-13077
https://www.cve.org/CVERecord?id=CVE-2017-13077
Référence CVE CVE-2017-13078
https://www.cve.org/CVERecord?id=CVE-2017-13078
Référence CVE CVE-2017-13080
https://www.cve.org/CVERecord?id=CVE-2017-13080
Référence CVE CVE-2017-13082
https://www.cve.org/CVERecord?id=CVE-2017-13082
Référence CVE CVE-2017-13086
https://www.cve.org/CVERecord?id=CVE-2017-13086
Référence CVE CVE-2017-13087
https://www.cve.org/CVERecord?id=CVE-2017-13087
Référence CVE CVE-2017-13088
https://www.cve.org/CVERecord?id=CVE-2017-13088
Référence CVE CVE-2017-13089
https://www.cve.org/CVERecord?id=CVE-2017-13089
Référence CVE CVE-2017-13090
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2018-AVI-372Multiples vulnérabilités dans Google Androids Google Android.
Certaines d'entre elles permettent à un attaquant de provoquer un
problème de sécurité non spécifié par l'éditeur, une exécution de code
arbitraire à distance et un déni de service à distance.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des
correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité Android du 06 août 2018
https://source.android.com/security/bulletin/2018-08-01
Bulletin de sécurité Pixel/Nexus du 06 août 2018
https://source.android.com/security/bulletin/pixel/2018-08-01
Référence CVE CVE-2017-1000100
https://www.cve.org/CVERecord?id=CVE-2017-1000100
Référence CVE CVE-2017-13077
https://www.cve.org/CVERecord?id=CVE-2017-13077
Référence CVE CVE-2017-13242
https://www.cve.org/CVERecord?id=CVE-2017-13242
Référence CVE CVE-2017-13295
https://www.cve.org/CVERecord?id=CVE-2017-13295
Référence CVE CVE-2017-13322
https://www.cve.org/CVERecord?id=CVE-2017-13322
Référence CVE CVE-2017-15817
https://www.cve.org/CVERecord?id=CVE-2017-15817
Référence CVE CVE-2017-18249
https://www.cve.org/CVERecord?id=CVE-2017-18249
Référence CVE CVE-2017-18280
https://www.cve.org/CVERecord?id=CVE-2017-18280
Référence CVE CVE-2017-18281
https://www.cve.org/CVERecord?id=CVE-2017-18281
Référence CVE CVE-2017-18282
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2018-AVI-324Multiples vulnérabilités dans Apple Wi-Fi Update for Boot CampDe multiples vulnérabilités ont été découvertes dans Apple Wi-Fi Update
for Boot Camp. Elles permettent à un attaquant de provoquer une atteinte
à l'intégrité des données et une atteinte à la confidentialité des
données.
Official advisory ↗CERT-FR · French · CERTFR-2018-AVI-320Multiples vulnérabilités dans Google Androidcode
arbitraire à distance et un déni de service à distance.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des
correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité Android du 02 juillet 2018
https://source.android.com/security/bulletin/2018-07-01
Bulletin de sécurité Pixel/Nexus du 02 juillet 2018
https://source.android.com/security/bulletin/pixel/2018-07-01
Référence CVE CVE-2016-2108
https://www.cve.org/CVERecord?id=CVE-2016-2108
Référence CVE CVE-2017-0606
https://www.cve.org/CVERecord?id=CVE-2017-0606
Référence CVE CVE-2017-1000
https://www.cve.org/CVERecord?id=CVE-2017-1000
Référence CVE CVE-2017-13077
https://www.cve.org/CVERecord?id=CVE-2017-13077
Référence CVE CVE-2017-13078
https://www.cve.org/CVERecord?id=CVE-2017-13078
Référence CVE CVE-2017-15841
https://www.cve.org/CVERecord?id=CVE-2017-15841
Référence CVE CVE-2017-15851
https://www.cve.org/CVERecord?id=CVE-2017-15851
Référence CVE CVE-2017-18131
https://www.cve.org/CVERecord?id=CVE-2017-18131
Référence CVE CVE-2017-18170
https://www.cve.org/CVERecord?id=CVE-2017-18170
Référence CVE CVE-2017-18171
https://www.cve.org/CVERecord?id=CVE-2017-18171
Référence CVE CVE-2017-18172
https://www.cve.org/CVERecord?id=CVE-2017-18172
Référence CVE CVE-2017-18173
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2018-AVI-267Multiples vulnérabilités dans Google Androidà distance
Élévation de privilèges
Systèmes affectés
Google Android toutes versions n'intégrant pas le correctif de sécurité du 4 juin 2018
Résumé
De multiples vulnérabilités ont été découvertes dans Google Android.
Certaines d'entre elles permettent à un attaquant de provoquer une
exécution de code arbitraire à distance, un déni de service à distance
et une atteinte à la confidentialité des données.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des
correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité Google du 4 juin 2018
https://source.android.com/security/bulletin/2018-06-01
Référence CVE CVE-2017-13077
https://www.cve.org/CVERecord?id=CVE-2017-13077
Référence CVE CVE-2017-13227
https://www.cve.org/CVERecord?id=CVE-2017-13227
Référence CVE CVE-2017-13230
https://www.cve.org/CVERecord?id=CVE-2017-13230
Référence CVE CVE-2017-17558
https://www.cve.org/CVERecord?id=CVE-2017-17558
Référence CVE CVE-2017-17806
https://www.cve.org/CVERecord?id=CVE-2017-17806
Référence CVE CVE-2017-17807
https://www.cve.org/CVERecord?id=CVE-2017-17807
Référence CVE CVE-2017-18155
https://www.cve.org/CVERecord?id=CVE-2017-18155
Référence CVE CVE-2017-18156
https://www.cve.org/CVERecord?id=CVE-2017-18156
Référence CVE CVE-2017-18157
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2018-AVI-216Multiples vulnérabilités dans Google Androidectif de sécurité du 07 mai 2018
Résumé
De multiples vulnérabilités ont été découvertes dans Google Android.
Certaines d'entre elles permettent à un attaquant de provoquer une
exécution de code arbitraire à distance, un déni de service à distance
et un contournement de la politique de sécurité.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des
correctifs (cf. section Documentation).
Documentation
Bulletin de sécurité Android du 7 mai 2018
https://source.android.com/security/bulletin/2018-05-01
Bulletin de sécurité Pixel/Nexus du 7 mai 2018
https://source.android.com/security/bulletin/pixel/2018-05-01
Référence CVE CVE-2017-13077
https://www.cve.org/CVERecord?id=CVE-2017-13077
Référence CVE CVE-2017-13309
https://www.cve.org/CVERecord?id=CVE-2017-13309
Référence CVE CVE-2017-13310
https://www.cve.org/CVERecord?id=CVE-2017-13310
Référence CVE CVE-2017-13311
https://www.cve.org/CVERecord?id=CVE-2017-13311
Référence CVE CVE-2017-13312
https://www.cve.org/CVERecord?id=CVE-2017-13312
Référence CVE CVE-2017-13313
https://www.cve.org/CVERecord?id=CVE-2017-13313
Référence CVE CVE-2017-13314
https://www.cve.org/CVERecord?id=CVE-2017-13314
Référence CVE CVE-2017-13315
https://www.cve.org/CVERecord?id=CVE-2017-13315
Référence CVE CVE-2017-13316
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2018-AVI-164Multiples vulnérabilités dans Google Androidord?id=CVE-2016-10495
Référence CVE CVE-2016-10496
https://www.cve.org/CVERecord?id=CVE-2016-10496
Référence CVE CVE-2016-10497
https://www.cve.org/CVERecord?id=CVE-2016-10497
Référence CVE CVE-2016-10498
https://www.cve.org/CVERecord?id=CVE-2016-10498
Référence CVE CVE-2016-10499
https://www.cve.org/CVERecord?id=CVE-2016-10499
Référence CVE CVE-2016-10501
https://www.cve.org/CVERecord?id=CVE-2016-10501
Référence CVE CVE-2016-5348
https://www.cve.org/CVERecord?id=CVE-2016-5348
Référence CVE CVE-2017-11011
https://www.cve.org/CVERecord?id=CVE-2017-11011
Référence CVE CVE-2017-11075
https://www.cve.org/CVERecord?id=CVE-2017-11075
Référence CVE CVE-2017-13077
https://www.cve.org/CVERecord?id=CVE-2017-13077
Référence CVE CVE-2017-13267
https://www.cve.org/CVERecord?id=CVE-2017-13267
Référence CVE CVE-2017-13274
https://www.cve.org/CVERecord?id=CVE-2017-13274
Référence CVE CVE-2017-13275
https://www.cve.org/CVERecord?id=CVE-2017-13275
Référence CVE CVE-2017-13276
https://www.cve.org/CVERecord?id=CVE-2017-13276
Référence CVE CVE-2017-13277
https://www.cve.org/CVERecord?id=CVE-2017-13277
Référence CVE CVE-2017-13278
https://www.cve.org/CVERecord?id=CVE-2017-13278
Référence CVE CVE-2017-13279
https://www.cve.org/CVERecord?id=CVE-2017-13279
Référence CVE CVE-2017-13280
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-478Multiples vulnérabilités dans SCADA les produits SiemensDe multiples vulnérabilités ont été découvertes dans SCADA les produits
Siemens . Elles permettent à un attaquant de provoquer une atteinte à
l'intégrité des données et une atteinte à la confidentialité des
données.
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-469Multiples vulnérabilités dans les produits AppleDe multiples vulnérabilités ont été découvertes dans les produits Apple
. Elles permettent à un attaquant de provoquer une exécution de code
arbitraire à distance, une atteinte à l'intégrité des données et une
atteinte à la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-398Multiples vulnérabilités dans NVIDIA Shield TabletDe multiples vulnérabilités ont été découvertes dans NVIDIA Shield
Tablet. Certaines d'entre elles permettent à un attaquant de provoquer
un déni de service, une atteinte à l'intégrité des données et une
atteinte à la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-394Multiples vulnérabilités dans Google Android (Nexus)Record?id=CVE-2017-0841
Référence CVE CVE-2017-0842
https://www.cve.org/CVERecord?id=CVE-2017-0842
Référence CVE CVE-2017-0843
https://www.cve.org/CVERecord?id=CVE-2017-0843
Référence CVE CVE-2017-11013
https://www.cve.org/CVERecord?id=CVE-2017-11013
Référence CVE CVE-2017-11014
https://www.cve.org/CVERecord?id=CVE-2017-11014
Référence CVE CVE-2017-11015
https://www.cve.org/CVERecord?id=CVE-2017-11015
Référence CVE CVE-2017-11017
https://www.cve.org/CVERecord?id=CVE-2017-11017
Référence CVE CVE-2017-11028
https://www.cve.org/CVERecord?id=CVE-2017-11028
Référence CVE CVE-2017-11092
https://www.cve.org/CVERecord?id=CVE-2017-11092
Référence CVE CVE-2017-13077
https://www.cve.org/CVERecord?id=CVE-2017-13077
Référence CVE CVE-2017-13078
https://www.cve.org/CVERecord?id=CVE-2017-13078
Référence CVE CVE-2017-13079
https://www.cve.org/CVERecord?id=CVE-2017-13079
Référence CVE CVE-2017-13080
https://www.cve.org/CVERecord?id=CVE-2017-13080
Référence CVE CVE-2017-13081
https://www.cve.org/CVERecord?id=CVE-2017-13081
Référence CVE CVE-2017-13082
https://www.cve.org/CVERecord?id=CVE-2017-13082
Référence CVE CVE-2017-13086
https://www.cve.org/CVERecord?id=CVE-2017-13086
Référence CVE CVE-2017-13087
https://www.cve.org/CVERecord?id=CVE-2017-13087
Référence CVE CVE-2017-13088
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-385Multiples vulnérabilités dans les produits Appled?id=CVE-2017-13047
Référence CVE CVE-2017-13048
https://www.cve.org/CVERecord?id=CVE-2017-13048
Référence CVE CVE-2017-13049
https://www.cve.org/CVERecord?id=CVE-2017-13049
Référence CVE CVE-2017-13050
https://www.cve.org/CVERecord?id=CVE-2017-13050
Référence CVE CVE-2017-13051
https://www.cve.org/CVERecord?id=CVE-2017-13051
Référence CVE CVE-2017-13052
https://www.cve.org/CVERecord?id=CVE-2017-13052
Référence CVE CVE-2017-13053
https://www.cve.org/CVERecord?id=CVE-2017-13053
Référence CVE CVE-2017-13054
https://www.cve.org/CVERecord?id=CVE-2017-13054
Référence CVE CVE-2017-13055
https://www.cve.org/CVERecord?id=CVE-2017-13055
Référence CVE CVE-2017-13077
https://www.cve.org/CVERecord?id=CVE-2017-13077
Référence CVE CVE-2017-13078
https://www.cve.org/CVERecord?id=CVE-2017-13078
Référence CVE CVE-2017-13080
https://www.cve.org/CVERecord?id=CVE-2017-13080
Référence CVE CVE-2017-13687
https://www.cve.org/CVERecord?id=CVE-2017-13687
Référence CVE CVE-2017-13688
https://www.cve.org/CVERecord?id=CVE-2017-13688
Référence CVE CVE-2017-13689
https://www.cve.org/CVERecord?id=CVE-2017-13689
Référence CVE CVE-2017-13690
https://www.cve.org/CVERecord?id=CVE-2017-13690
Référence CVE CVE-2017-13725
https://www.cve.org/CVERecord?id=CVE-2017-13725
Référence CVE CVE-2017-13782
https://www.cve.org/CVERecord?id=
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-373Multiples vulnérabilités dans RedHat wpa_supplicantDe multiples vulnérabilités ont été découvertes dans RedHat
wpa_supplicant. Elles permettent à un attaquant de provoquer une
atteinte à l'intégrité des données et une atteinte à la confidentialité
des données.
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-361Multiples vulnérabilités dans les produits Juniper utilisant le protocole WPA/WPA2De multiples vulnérabilités ont été découvertes dans les produits
Juniper utilisant le protocole WPA/WPA2 . Elles permettent à un
attaquant de provoquer une atteinte à l'intégrité des données et une
atteinte à la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-359Multiples vulnérabilités dans Ubuntu wpa_supplicant et hostpadDe multiples vulnérabilités ont été découvertes dans Ubuntu
wpa_supplicant et hostpad. Certaines d'entre elles permettent à un
attaquant de provoquer une exécution de code arbitraire, un déni de
service à distance et un déni de service.
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-360Multiples vulnérabilités dans les produits Fortinet utilisant le protocole WPA/WPA2De multiples vulnérabilités ont été découvertes dans les produits
Fortinet utilisant le protocole WPA/WPA2. Elles permettent à un
attaquant de provoquer une atteinte à l'intégrité des données et une
atteinte à la confidentialité des données.
Official advisory ↗CERT-FR · French · CERTFR-2017-AVI-358Multiples vulnérabilités dans Debian sur le protocole WPA/WPA2De multiples vulnérabilités ont été découvertes dans Debian sur le
protocole WPA/WPA2. Elles permettent à un attaquant de provoquer une
atteinte à l'intégrité des données et une atteinte à la confidentialité
des données.
Official advisory ↗JVN iPedia · Japanese · JVNDB-2017-008412Wi-Fi Protected Access における Pairwise Transient Key Temporal Key を再インストールされる脆弱性Wi-Fi Protected Access (WPA および WPA2) には、4-way ハンドシェイク中に、Pairwise Transient Key (PTK) Temporal Key (TK) を再インストールされ、フレームを再生、復号、または偽装される脆弱性が存在します。
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-4807Cisco 제품군 취약점 보안 업데이트 권고Wi-Fi Protected Access에서 발생하는 KRACK Wi-Fi 암호기술(WPA2) 취약점(CVE-2017-13077, CVE-2017-13078,
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-4802Cisco 제품군 취약점 보안 업데이트 권고Cisco 다수 장비에서 발생하는 KRACK Wi-Fi 암호기술(WPA2) 취약점(CVE-2017-13077, CVE-2017-13078,
Official advisory ↗KISA KrCERT/CC · Korean · KNVD-4803KRACK Wi-Fi 암호기술(WPA2) 취약점 보안 업데이트 권고#### KRACK Wi-Fi 암호기술(WPA2) 취약점 보안 업데이트 권고 2017.10.17
##### □ 개요
o Wi-Fi 암호 기술인 WPA2를 사용하는 운영체제에서 악용 가능한 취약점(KRACK, Key Reinstallation Attacks)이 공개됨[1]
o 영향 받는 버전의 사용자는 개인정보 유출 및 통신 도청 등에 피해를 입을 수 있기 때문에 해결방안에 따라 최신 버전으로 업데이트 권고
##### □ 취약점 설명
o 4-way-handshake에서 양방향 암호화키(PTK-TK)를 재설치하여 정보 유출이 가능한 취약점(CVE-2017-13077)
o 4-way-handshake에서 그룹 암호화키(GTK)를 재설치하여 정보 유출이 가능한 취약점(CVE-2017-13078)
o 4-way-handshake에서 무결성 그룹 암호화키(IGTK)를 재설치하여 정보 유출이 가능한 취약점(CVE-2017-13079)
o 그룹 Key handshake에서 그룹 암호화키(GTK)를 재설치하여 정보 유출이 가능한 취약점(CVE-2017-13080)
o 그룹 Key handshake에서 무결성 그룹 암호화키(IGTK)를 재설치하여 정보 유출이 가능한 취약점(CVE-2017-13081)
o 재전송된 FT(Fast BSS Translation)를 연결 하는 동안 양방향 암호화키(PTK-TK)를 재설치하여 정보 유출이
가능한 취약점(CVE-2017-13082)
o PeerKey handshake에서 STK(Short-Term Key)를 재설치하여 정보 유출이 가능한 취약점(CVE-2017-13084)
o TDLS(Tunneled Direct-Link Setup) handshake에서 TDLS PeerKey(TPK)를 재설치하여 정보 유출이
가능한 취약점(CVE-2017-13086)
o 무선 네트워크 관리(WNM)가 슬립 모드 응답 프레임을 처리할 때 그룹 암호화키(GTK)를 재설치하여 정보 유출이
가능한 취약
Official advisory ↗