vendor:
ICU
by:
Pedro Ribeiro
9,3
CVSS
HIGH
Heap overflow and Integer overflow
119, 190
CWE
Product Name: ICU
Affected Version From: ICU 52
Affected Version To: ICU 54
Patch Exists: Yes
Related CWE: CVE-2014-8146, CVE-2014-8147
CPE: a:icu-project:icu
Metasploit:
https://www.rapid7.com/db/vulnerabilities/suse-cve-2014-8146/, https://www.rapid7.com/db/vulnerabilities/oracle-solaris-cve-2014-8146/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2014-8146/, https://www.rapid7.com/db/vulnerabilities/apple-ios-cve-2014-8146/, https://www.rapid7.com/db/vulnerabilities/apple-osx-icu-cve-2014-8146/, https://www.rapid7.com/db/vulnerabilities/apple-itunes-cve-2014-8146/, https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2014-8147/, https://www.rapid7.com/db/vulnerabilities/oracle-solaris-cve-2014-8147/, https://www.rapid7.com/db/vulnerabilities/apple-itunes-cve-2014-8147/, https://www.rapid7.com/db/vulnerabilities/apple-osx-icu-cve-2014-8147/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2014-8147/
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2015
Heap overflow and integer overflow in ICU library
While fuzzing LibreOffice an integer overflow and a heap overflow were found in the ICU library. This library is used by LibreOffice and hundreds of other software packages. Proof of concept files can be downloaded from [1]. These files have been tested with LibreOffice 4.3.3.2 and LibreOffice 4.4.0-beta2 and ICU 52. Note that at this point in time it is unknown whether these vulnerabilities are exploitable.
Mitigation:
Upgrade to ICU 55 or later.