Bug 1690673 (CVE-2018-18506) - CVE-2018-18506 Mozilla: Proxy Auto-Configuration file can define localhost access to be proxied
Summary: CVE-2018-18506 Mozilla: Proxy Auto-Configuration file can define localhost ac...
Status: CLOSED ERRATA
Alias: CVE-2018-18506
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
medium
medium
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard: impact=moderate,public=20190320,repor...
Keywords: Security
Depends On: 1688867 1690496 1690692 1703894 1688866 1688868 1690494 1690495 1703888 1703893
Blocks: 1688735 1690493
TreeView+ depends on / blocked
 
Reported: 2019-03-20 02:14 UTC by Doran Moppert
Modified: 2019-06-10 10:51 UTC (History)
4 users (show)

(edit)
Clone Of:
(edit)
Last Closed: 2019-06-10 10:51:14 UTC


Attachments (Terms of Use)


External Trackers
Tracker ID Priority Status Summary Last Updated
Red Hat Product Errata RHSA-2019:0622 None None None 2019-03-20 15:11 UTC
Red Hat Product Errata RHSA-2019:0623 None None None 2019-03-20 15:21 UTC
Red Hat Product Errata RHSA-2019:0680 None None None 2019-03-28 14:48 UTC
Red Hat Product Errata RHSA-2019:0681 None None None 2019-03-28 14:49 UTC
Red Hat Product Errata RHSA-2019:0966 None None None 2019-05-07 04:17 UTC
Red Hat Product Errata RHSA-2019:1144 None None None 2019-05-13 05:03 UTC

Description Doran Moppert 2019-03-20 02:14:03 UTC
When proxy auto-detection is enabled, if a web server serves a Proxy Auto-Configuration (PAC) file or if a PAC file is loaded locally, this PAC file can specify that requests to the localhost are to be sent through the proxy to another server. This behavior is disallowed by default when a proxy is manually configured, but when enabled could allow for attacks on services and tools that bind to the localhost for networked behavior if they are accessed through browsing.



External Reference:

https://www.mozilla.org/en-US/security/advisories/mfsa2019-08/#CVE-2018-18506

Comment 1 Doran Moppert 2019-03-20 02:14:05 UTC
Acknowledgments:

Name: the Mozilla project
Upstream: Jann Horn

Comment 3 errata-xmlrpc 2019-03-20 15:11:53 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 7

Via RHSA-2019:0622 https://access.redhat.com/errata/RHSA-2019:0622

Comment 4 errata-xmlrpc 2019-03-20 15:21:45 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 6

Via RHSA-2019:0623 https://access.redhat.com/errata/RHSA-2019:0623

Comment 5 errata-xmlrpc 2019-03-28 14:48:18 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 6

Via RHSA-2019:0680 https://access.redhat.com/errata/RHSA-2019:0680

Comment 6 errata-xmlrpc 2019-03-28 14:49:36 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 7

Via RHSA-2019:0681 https://access.redhat.com/errata/RHSA-2019:0681

Comment 8 errata-xmlrpc 2019-05-07 04:17:58 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2019:0966 https://access.redhat.com/errata/RHSA-2019:0966

Comment 9 errata-xmlrpc 2019-05-13 05:03:21 UTC
This issue has been addressed in the following products:

  Red Hat Enterprise Linux 8

Via RHSA-2019:1144 https://access.redhat.com/errata/RHSA-2019:1144


Note You need to log in before you can comment on or make changes to this bug.