Bug 1300683 (CVE-2016-1926)

Summary: CVE-2016-1926 openvas-gsa: XSS vulnerability due to improper handling of the parameters of get_aggregate command
Product: [Other] Security Response Reporter: Adam Mariš <amaris>
Component: vulnerabilityAssignee: Red Hat Product Security <security-response-team>
Status: CLOSED ERRATA QA Contact:
Severity: medium Docs Contact:
Priority: medium    
Version: unspecifiedCC: cheese, huzaifas, mail, rebus, stjepan.gros, xavier
Target Milestone: ---Keywords: Security
Target Release: ---   
Hardware: All   
OS: Linux   
Whiteboard:
Fixed In Version: openvas-gsa 6.0.8 Doc Type: Bug Fix
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2019-05-30 11:12:59 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On: 1300684, 1300685    
Bug Blocks:    

Description Adam Mariš 2016-01-21 13:05:03 UTC
It was reported that openvas-gsa is vulnerable to cross-site scripting due to improper handling of parameters of get_aggregate command. If the attacker has access to a session token of the browser session, the cross site scripting can be executed. Affects versions >= 6.0.0 and < 6.0.8.

External References:

http://www.openvas.org/OVSA20160113.html

Comment 1 Adam Mariš 2016-01-21 13:05:37 UTC
Created openvas-gsa tracking bugs for this issue:

Affects: fedora-all [bug 1300684]
Affects: epel-all [bug 1300685]

Comment 2 Fedora Update System 2016-05-01 23:52:12 UTC
openvas-cli-1.4.4-1.fc23, openvas-gsa-6.0.10-3.fc23, openvas-libraries-8.0.7-2.fc23, openvas-manager-6.0.8-2.fc23, openvas-scanner-5.0.5-3.fc23 has been pushed to the Fedora 23 stable repository. If problems still persist, please make note of it in this bug report.

Comment 3 Fedora Update System 2016-05-08 15:20:40 UTC
openvas-cli-1.4.4-1.fc22, openvas-gsa-6.0.10-3.fc22, openvas-libraries-8.0.7-2.fc22, openvas-manager-6.0.8-2.fc22, openvas-scanner-5.0.5-3.fc22 has been pushed to the Fedora 22 stable repository. If problems still persist, please make note of it in this bug report.

Comment 4 Fedora Update System 2016-06-03 13:18:31 UTC
openvas-cli-1.4.4-1.el7, openvas-gsa-6.0.10-3.el7, openvas-libraries-8.0.7-2.el7, openvas-manager-6.0.8-2.el7, openvas-scanner-5.0.5-3.el7 has been pushed to the Fedora EPEL 7 stable repository. If problems still persist, please make note of it in this bug report.