PT-2024-13325 · Sane+1 · Sane+1
Meng Ruijie
·
Published
2024-01-26
·
Updated
2025-09-23
·
CVE-2023-46052
CVSS v3.1
7.1
High
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Sane version 1.2.1
Description
The issue is related to a heap bounds overwrite in the
init options() function from backend/test.c via a long init mode string in a configuration file. This is disputed because there is no expectation that test.c code should be executed with an attacker-controlled configuration file.Recommendations
For Sane version 1.2.1, consider restricting access to the
init options() function or limiting the length of the init mode string in configuration files to prevent potential exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Debian
Sane