PT-2015-1559 · Openprinting+5 · Cups-Filters+5

Petr Sklenar

·

Published

2015-06-26

·

Updated

2024-06-15

·

CVE-2015-3258

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions cups-filters versions prior to 1.0.70
Description The issue is caused by a heap-based buffer overflow in the WriteProlog function of the cups-filters package, which can be exploited by a remote attacker to execute arbitrary code or cause a denial of service using a specially crafted print job. The vulnerability is triggered by a small line size in a print job.
Recommendations For cups-filters versions prior to 1.0.70, update to version 1.0.70 or later to resolve the issue. As a temporary workaround, consider restricting access to the print job functionality to minimize the risk of exploitation.

Fix

DoS

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2015-1609
BDU:2015-10867
BDU:2015-10868
CESA-2015_2360
CVE-2015-3258
DLA-314-1
DSA-3303-1
MGASA-2015-0270
OPENSUSE-SU-2024:10313-1
RHSA-2015:2360
RHSA-2015_2360
SUSE-SU-2015:1377-1
SUSE-SU-2015_1377-1
USN-2659-1

Affected Products

Alt Linux
Centos
Red Hat
Suse
Ubuntu
Cups-Filters