PT-2024-13325 · Sane+1 · Sane+1

Meng Ruijie

·

Published

2024-01-26

·

Updated

2025-09-23

·

CVE-2023-46052

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H
Name of the Vulnerable Software and Affected Versions Sane version 1.2.1
Description The issue is related to a heap bounds overwrite in the init options() function from backend/test.c via a long init mode string in a configuration file. This is disputed because there is no expectation that test.c code should be executed with an attacker-controlled configuration file.
Recommendations For Sane version 1.2.1, consider restricting access to the init options() function or limiting the length of the init mode string in configuration files to prevent potential exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Related Identifiers

CVE-2023-46052
OESA-2024-1590

Affected Products

Debian
Sane