PT-2017-3135 · Pharos · Pharos Popup Printer Client

Published

2017-02-07

·

Updated

2023-01-27

·

CVE-2017-2788

CVSS v3.1

10

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Pharos PopUp printer client version 9.0
Description A buffer overflow exists in the psnotifyd application, allowing a specially crafted packet to cause a heap-based buffer overflow. This can result in potential remote code execution. The client is always listening, has root privileges, and requires no user interaction to exploit.
Recommendations For Pharos PopUp printer client version 9.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2017-02535
CVE-2017-2788

Affected Products

Pharos Popup Printer Client