SCAP Feed Release : 11-May-2018

  • Post author:
  • Reading time:54 mins read

The following SCAP content has been released to SCAP Repo and SecPod Saner Solution. SecPod Saner will automatically pull the relevant content on its next scheduled update.

oval:org.secpod.oval:def:114345 FEDORA-2018-1361f39801 FEDORA-2018-1361f39801 — Fedora 26 ckeditor-4.9.2-1.fc26
oval:org.secpod.oval:def:114347 FEDORA-2018-bd73ec6f3a FEDORA-2018-bd73ec6f3a — Fedora 27 quassel-0.12.5-1.fc27
oval:org.secpod.oval:def:114348 CVE-2017-6922
CVE-2017-6927
CVE-2017-6928
CVE-2017-6929
CVE-2017-6932
CVE-2018-7600
CVE-2018-7602
FEDORA-2018-2359c2ae0e
FEDORA-2018-2359c2ae0e — Fedora 26 drupal7-7.59-1.fc26
oval:org.secpod.oval:def:114349 CVE-2018-1000002
CVE-2018-1110
FEDORA-2018-0c0671072b
FEDORA-2018-0c0671072b — Fedora 26 knot-resolver-2.3.0-1.fc26
oval:org.secpod.oval:def:114350 CVE-2018-1000002
CVE-2018-1110
FEDORA-2018-a120d509ab
FEDORA-2018-a120d509ab — Fedora 27 knot-resolver-2.3.0-1.fc27
oval:org.secpod.oval:def:114351 FEDORA-2018-5e8de70380 FEDORA-2018-5e8de70380 — Fedora 26 quassel-0.12.5-1.fc26
oval:org.secpod.oval:def:114352 CVE-2017-6926
CVE-2017-6927
CVE-2017-6930
CVE-2017-6931
CVE-2018-7600
CVE-2018-7602
CVE-2018-9861
FEDORA-2018-1ba93b3144
FEDORA-2018-1ba93b3144 — Fedora 27 drupal8-8.4.8-1.fc27
oval:org.secpod.oval:def:114353 FEDORA-2018-e29c7d10da FEDORA-2018-e29c7d10da — Fedora 27 ckeditor-4.9.2-1.fc27
oval:org.secpod.oval:def:114354 CVE-2017-6927
CVE-2017-6928
CVE-2017-6929
CVE-2017-6932
CVE-2018-7600
CVE-2018-7602
FEDORA-2018-b9ad458866
FEDORA-2018-b9ad458866 — Fedora 27 drupal7-7.59-1.fc27
oval:org.secpod.oval:def:114355 FEDORA-2018-59eb033684 FEDORA-2018-59eb033684 — Fedora 27 perl-Dancer2-0.206000-1.fc27
oval:org.secpod.oval:def:114357 CVE-2017-1002101
FEDORA-2018-16c8fdf9b8
FEDORA-2018-16c8fdf9b8 — Fedora 27 kubernetes-1.10.1-0.fc27
oval:org.secpod.oval:def:1700032 ALAS-2018-1010
CVE-2017-11368
CVE-2017-7562
ALAS2-2018-1010 — krb5
oval:org.secpod.oval:def:1700033 ALAS-2018-1009
CVE-2015-7704
CVE-2016-1549
CVE-2016-7426
CVE-2016-7429
CVE-2016-7433
CVE-2016-9310
CVE-2016-9311
CVE-2017-6462
CVE-2017-6463
CVE-2017-6464
CVE-2018-7170
CVE-2018-7182
CVE-2018-7183
CVE-2018-7184
CVE-2018-7185
ALAS2-2018-1009 — ntp
oval:org.secpod.oval:def:1700034 ALAS-2018-1007
CVE-2018-2790
CVE-2018-2794
CVE-2018-2795
CVE-2018-2796
CVE-2018-2797
CVE-2018-2798
CVE-2018-2799
CVE-2018-2800
CVE-2018-2814
CVE-2018-2815
ALAS2-2018-1007 — java-1.7.0-openjdk
oval:org.secpod.oval:def:1700035 ALAS-2018-1014
CVE-2018-1084
ALAS2-2018-1014 — corosync
oval:org.secpod.oval:def:1700036 ALAS-2018-1013
CVE-2018-1071
CVE-2018-1083
CVE-2018-1100
ALAS2-2018-1013 — zsh
oval:org.secpod.oval:def:1700037 ALAS-2018-1008
CVE-2015-1418
CVE-2018-1000156
ALAS2-2018-1008 — patch
oval:org.secpod.oval:def:1700038 ALAS-2018-1011
CVE-2017-15041
CVE-2017-15042
CVE-2018-6574
ALAS2-2018-1011 — golang
oval:org.secpod.oval:def:1700039 ALAS-2018-1012
CVE-2018-7225
ALAS2-2018-1012 — libvncserver
oval:org.secpod.oval:def:1700040 ALAS-2018-1015
CVE-2017-13194
ALAS2-2018-1015 — libvpx
oval:org.secpod.oval:def:204797 CESA-2018:1364
CVE-2018-1089
CESA-2018:1364 — centos 6 389-ds-base
oval:org.secpod.oval:def:204798 CESA-2018:1319
CVE-2017-1000410
CVE-2017-13166
CVE-2017-18017
CVE-2017-5754
CVE-2017-7645
CVE-2017-8824
CVE-2018-8897
CESA-2018:1319 — centos 6 kernel,python-perf,perf
oval:org.secpod.oval:def:45469 CVE-2018-6120 Heap buffer overflow vulnerability in the PDFium in Google Chrome via unspecified vectors
oval:org.secpod.oval:def:45470 CVE-2018-6121 Privilege Escalation vulnerability in the extensions in Google Chrome via unspecified vectors
oval:org.secpod.oval:def:45471 CVE-2018-6122 Type confusion vulnerability in the V8 in Google Chrome via unspecified vectors
oval:org.secpod.oval:def:45472 CVE-2018-6120
CVE-2018-6121
CVE-2018-6122
VENDORLINK
Multiple vulnerabilities in Google Chrome via unspecified vectors
oval:org.secpod.oval:def:45473 CVE-2018-6120 Heap buffer overflow vulnerability in the PDFium in Google Chrome via unspecified vectors (Mac OS X)
oval:org.secpod.oval:def:45474 CVE-2018-6121 Privilege Escalation vulnerability in the extensions in Google Chrome via unspecified vectors (Mac OS X)
oval:org.secpod.oval:def:45475 CVE-2018-6122 Type confusion vulnerability in the V8 in Google Chrome via unspecified vectors (Mac OS X)
oval:org.secpod.oval:def:45476 CVE-2018-6120
CVE-2018-6121
CVE-2018-6122
VENDORLINK
Heap buffer overflow vulnerability in the PDFium in Google Chrome via unspecified vectors (Mac OS X)
oval:org.secpod.oval:def:45477 CVE-2018-6120 Heap buffer overflow vulnerability in the PDFium in Google Chrome via unspecified vectors (rpm)
oval:org.secpod.oval:def:45478 CVE-2018-6120 Heap buffer overflow vulnerability in the PDFium in Google Chrome via unspecified vectors (dpkg)
oval:org.secpod.oval:def:45479 CVE-2018-6121 Privilege Escalation vulnerability in the extensions in Google Chrome via unspecified vectors (rpm)
oval:org.secpod.oval:def:45480 CVE-2018-6121 Privilege Escalation vulnerability in the extensions in Google Chrome via unspecified vectors (dpkg)
oval:org.secpod.oval:def:45481 CVE-2018-6122 Type confusion vulnerability in the V8 in Google Chrome via unspecified vectors (rpm)
oval:org.secpod.oval:def:45482 CVE-2018-6122 Type confusion vulnerability in the V8 in Google Chrome via unspecified vectors (dpkg)
oval:org.secpod.oval:def:45483 CVE-2018-6120
CVE-2018-6121
CVE-2018-6122
VENDORLINK
Multiple vulnerabilities in Google Chrome via unspecified vectors (rpm)
oval:org.secpod.oval:def:45484 CVE-2018-6120
CVE-2018-6121
CVE-2018-6122
VENDORLINK
Multiple vulnerabilities in Google Chrome via unspecified vectors (dpkg)
oval:org.secpod.oval:def:45485 CVE-2018-5150 Memory corruption vulnerability in Mozilla Firefox and Firefox ESR – CVE-2018-5150
oval:org.secpod.oval:def:45486 CVE-2018-5155 Use-after-free vulnerability in Mozilla Firefox and Firefox ESR – CVE-2018-5155
oval:org.secpod.oval:def:45487 CVE-2018-5157 Same-origin protection bypass vulnerability in Mozilla Firefox and Firefox ESR – CVE-2018-5157
oval:org.secpod.oval:def:45488 CVE-2018-5158 Privilege escalation vulnerability in Mozilla Firefox and Firefox ESR – CVE-2018-5158
oval:org.secpod.oval:def:45489 CVE-2018-5159 Integer overflow vulnerability in Mozilla Firefox and Firefox ESR – CVE-2018-5159
oval:org.secpod.oval:def:45490 CVE-2018-5168 Security bypass vulnerability in Mozilla Firefox and Firefox ESR – CVE-2018-5168
oval:org.secpod.oval:def:45491 CVE-2018-5154 Use-after-free vulnerability in Mozilla Firefox ESR – CVE-2018-5154
oval:org.secpod.oval:def:45492 CVE-2018-5178 Use-after-free vulnerability in Mozilla Firefox ESR – CVE-2018-5178
oval:org.secpod.oval:def:45493 CVE-2018-5183 Memory corruption vulnerability in Mozilla Firefox ESR – CVE-2018-5183
oval:org.secpod.oval:def:45494 CVE-2018-5151 Memory corruption vulnerability in Mozilla Firefox – CVE-2018-5151
oval:org.secpod.oval:def:45495 CVE-2018-5152 Information disclosure vulnerability in Mozilla Firefox – CVE-2018-5152
oval:org.secpod.oval:def:45496 CVE-2018-5160 Denial of service vulnerability in Mozilla Firefox – CVE-2018-5160
oval:org.secpod.oval:def:45497 CVE-2018-5163 Privilege escalation vulnerability in Mozilla Firefox – CVE-2018-5163
oval:org.secpod.oval:def:45498 CVE-2018-5164 Cross-site scripting (XSS) vulnerability in Mozilla Firefox – CVE-2018-5164
oval:org.secpod.oval:def:45499 CVE-2018-5165 Type confusion vulnerability in Mozilla Firefox – CVE-2018-5165
oval:org.secpod.oval:def:45500 CVE-2018-5166 Security bypass vulnerability in Mozilla Firefox – CVE-2018-5166
oval:org.secpod.oval:def:45501 CVE-2018-5167 Unspecified vulnerability in Mozilla Firefox – CVE-2018-5167
oval:org.secpod.oval:def:45502 CVE-2018-5169 Unspecified vulnerability in Mozilla Firefox – CVE-2018-5169
oval:org.secpod.oval:def:45503 CVE-2018-5172 Privilege escalation vulnerability in Mozilla Firefox – CVE-2018-5172
oval:org.secpod.oval:def:45504 CVE-2018-5173 File name spoofing vulnerability in Mozilla Firefox – CVE-2018-5173
oval:org.secpod.oval:def:45505 CVE-2018-5175 Universal CSP bypass vulnerability in Mozilla Firefox – CVE-2018-5175
oval:org.secpod.oval:def:45506 CVE-2018-5176 Information disclosure vulnerability in Mozilla Firefox – CVE-2018-5176
oval:org.secpod.oval:def:45507 CVE-2018-5177 Buffer overflow vulnerability in Mozilla Firefox – CVE-2018-5177
oval:org.secpod.oval:def:45508 CVE-2018-5180 Use-after-free vulnerability in Mozilla Firefox – CVE-2018-5180
oval:org.secpod.oval:def:45509 CVE-2018-5181 Unspecified vulnerability in Mozilla Firefox – CVE-2018-5181
oval:org.secpod.oval:def:45510 CVE-2018-5182 Unspecified vulnerability in Mozilla Firefox – CVE-2018-5182
oval:org.secpod.oval:def:45511 CVE-2018-5153 Out-of-bounds read vulnerability in Mozilla Firefox – CVE-2018-5153
oval:org.secpod.oval:def:45512 CVE-2018-5150
CVE-2018-5151
CVE-2018-5152
CVE-2018-5153
CVE-2018-5155
CVE-2018-5157
CVE-2018-5158
CVE-2018-5159
CVE-2018-5160
CVE-2018-5163
CVE-2018-5164
CVE-2018-5165
CVE-2018-5166
CVE-2018-5167
CVE-2018-5168
CVE-2018-5169
CVE-2018-5172
CVE-2018-5173
CVE-2018-5175
CVE-2018-5176
CVE-2018-5177
CVE-2018-5180
CVE-2018-5181
CVE-2018-5182
MFSA2018-11
Multiple vulnerabilities in Mozilla Firefox – MFSA2018-11
oval:org.secpod.oval:def:45513 CVE-2018-5150
CVE-2018-5154
CVE-2018-5155
CVE-2018-5157
CVE-2018-5158
CVE-2018-5159
CVE-2018-5168
CVE-2018-5178
CVE-2018-5183
MFSA2018-12
Multiple vulnerabilities in Mozilla Firefox ESR – MFSA2018-12
oval:org.secpod.oval:def:45514 CVE-2018-5150 Memory corruption vulnerability in Mozilla Firefox and Firefox ESR – CVE-2018-5150 (Mac OS X)
oval:org.secpod.oval:def:45515 CVE-2018-5155 Use-after-free vulnerability in Mozilla Firefox and Firefox ESR – CVE-2018-5155 (Mac OS X)
oval:org.secpod.oval:def:45516 CVE-2018-5157 Same-origin protection bypass vulnerability in Mozilla Firefox and Firefox ESR – CVE-2018-5157 (Mac OS X)
oval:org.secpod.oval:def:45517 CVE-2018-5158 Privilege escalation vulnerability in Mozilla Firefox and Firefox ESR – CVE-2018-5158 (Mac OS X)
oval:org.secpod.oval:def:45518 CVE-2018-5159 Integer overflow vulnerability in Mozilla Firefox and Firefox ESR – CVE-2018-5159 (Mac OS X)
oval:org.secpod.oval:def:45519 CVE-2018-5168 Security bypass vulnerability in Mozilla Firefox and Firefox ESR – CVE-2018-5168 (Mac OS X)
oval:org.secpod.oval:def:45520 CVE-2018-5154 Use-after-free vulnerability in Mozilla Firefox ESR – CVE-2018-5154 (Mac OS X)
oval:org.secpod.oval:def:45521 CVE-2018-5178 Use-after-free vulnerability in Mozilla Firefox ESR – CVE-2018-5178 (Mac OS X)
oval:org.secpod.oval:def:45522 CVE-2018-5183 Memory corruption vulnerability in Mozilla Firefox ESR – CVE-2018-5183 (Mac OS X)
oval:org.secpod.oval:def:45523 CVE-2018-5168 Security bypass vulnerability in Mozilla Firefox – CVE-2018-5168 (Mac OS X)
oval:org.secpod.oval:def:45524 CVE-2018-5152 Information disclosure vulnerability in Mozilla Firefox – CVE-2018-5152 (Mac OS X)
oval:org.secpod.oval:def:45525 CVE-2018-5160 Denial of service vulnerability in Mozilla Firefox – CVE-2018-5160 (Mac OS X)
oval:org.secpod.oval:def:45526 CVE-2018-5163 Privilege escalation vulnerability in Mozilla Firefox – CVE-2018-5163 (Mac OS X)
oval:org.secpod.oval:def:45527 CVE-2018-5164 Cross-site scripting (XSS) vulnerability in Mozilla Firefox – CVE-2018-5164 (Mac OS X)
oval:org.secpod.oval:def:45528 CVE-2018-5165 Type confusion vulnerability in Mozilla Firefox – CVE-2018-5165 (Mac OS X)
oval:org.secpod.oval:def:45529 CVE-2018-5166 Security bypass vulnerability in Mozilla Firefox – CVE-2018-5166 (Mac OS X)
oval:org.secpod.oval:def:45530 CVE-2018-5167 Unspecified vulnerability in Mozilla Firefox – CVE-2018-5167 (Mac OS X)
oval:org.secpod.oval:def:45531 CVE-2018-5169 Unspecified vulnerability in Mozilla Firefox – CVE-2018-5169 (Mac OS X)
oval:org.secpod.oval:def:45532 CVE-2018-5172 Privilege escalation vulnerability in Mozilla Firefox – CVE-2018-5172 (Mac OS X)
oval:org.secpod.oval:def:45533 CVE-2018-5173 File name spoofing vulnerability in Mozilla Firefox – CVE-2018-5173 (Mac OS X)
oval:org.secpod.oval:def:45534 CVE-2018-5175 Universal CSP bypass vulnerability in Mozilla Firefox – CVE-2018-5175 (Mac OS X)
oval:org.secpod.oval:def:45535 CVE-2018-5176 Information disclosure vulnerability in Mozilla Firefox – CVE-2018-5176 (Mac OS X)
oval:org.secpod.oval:def:45536 CVE-2018-5177 Buffer overflow vulnerability in Mozilla Firefox – CVE-2018-5177 (Mac OS X)
oval:org.secpod.oval:def:45537 CVE-2018-5180 Use-after-free vulnerability in Mozilla Firefox – CVE-2018-5180 (Mac OS X)
oval:org.secpod.oval:def:45538 CVE-2018-5181 Unspecified vulnerability in Mozilla Firefox – CVE-2018-5181 (Mac OS X)
oval:org.secpod.oval:def:45539 CVE-2018-5182 Unspecified vulnerability in Mozilla Firefox – CVE-2018-5182 (Mac OS X)
oval:org.secpod.oval:def:45540 CVE-2018-5153 Out-of-bounds read vulnerability in Mozilla Firefox – CVE-2018-5153 (Mac OS X)
oval:org.secpod.oval:def:45541 CVE-2018-5150
CVE-2018-5151
CVE-2018-5152
CVE-2018-5153
CVE-2018-5155
CVE-2018-5157
CVE-2018-5158
CVE-2018-5159
CVE-2018-5160
CVE-2018-5163
CVE-2018-5164
CVE-2018-5165
CVE-2018-5166
CVE-2018-5167
CVE-2018-5168
CVE-2018-5169
CVE-2018-5172
CVE-2018-5173
CVE-2018-5175
CVE-2018-5176
CVE-2018-5177
CVE-2018-5180
CVE-2018-5181
CVE-2018-5182
MFSA2018-11
Multiple vulnerabilities in Mozilla Firefox – MFSA2018-11 (Mac OS X)
oval:org.secpod.oval:def:45542 CVE-2018-5150
CVE-2018-5154
CVE-2018-5155
CVE-2018-5157
CVE-2018-5158
CVE-2018-5159
CVE-2018-5168
CVE-2018-5178
CVE-2018-5183
MFSA2018-12
Multiple vulnerabilities in Mozilla Firefox ESR – MFSA2018-12 (Mac OS X)
oval:org.secpod.oval:def:502286 CVE-2017-1000410
CVE-2017-13166
CVE-2017-18017
CVE-2017-5754
CVE-2017-7645
CVE-2017-8824
CVE-2018-8897
RHSA-2018:1319-01
RHSA-2018:1319-01 — Redhat kernel, perf
oval:org.secpod.oval:def:502287 CVE-2017-16939
CVE-2018-1000199
CVE-2018-1068
CVE-2018-1087
CVE-2018-1091
CVE-2018-8897
RHSA-2018:1318-01
RHSA-2018:1318-01 — Redhat kernel, python-perf, perf
oval:org.secpod.oval:def:502288 CVE-2018-1089
RHSA-2018:1364-01
RHSA-2018:1364-01 — Redhat 389-ds-base
oval:org.secpod.oval:def:704068 CVE-2018-4200
USN-3640-1
USN-3640-1 — webkitgtk+ vulnerability
oval:org.secpod.oval:def:704069 CVE-2018-1059
USN-3642-1
USN-3642-1 — dpdk vulnerability