Incomplete blacklist vulnerability in util.c in foomatic-rip in cups-filters 1.0.42 before 1.4.0 and in foomatic-filters in Foomatic 4.0.x allows remote attackers to execute arbitrary commands via a ; (semicolon) character in a print job, a different vulnerability than CVE-2015-8327.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
21 Nov 2024, 02:38
Type | Values Removed | Values Added |
---|---|---|
References | () http://bzr.linuxfoundation.org/loggerhead/openprinting/cups-filters/annotate/head:/NEWS - Vendor Advisory | |
References | () http://bzr.linuxfoundation.org/loggerhead/openprinting/cups-filters/revision/7419 - | |
References | () http://rhn.redhat.com/errata/RHSA-2016-0491.html - | |
References | () http://www.debian.org/security/2015/dsa-3419 - | |
References | () http://www.debian.org/security/2015/dsa-3429 - | |
References | () http://www.openwall.com/lists/oss-security/2015/12/13/2 - | |
References | () http://www.openwall.com/lists/oss-security/2015/12/14/13 - | |
References | () http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html - | |
References | () http://www.ubuntu.com/usn/USN-2838-1 - | |
References | () http://www.ubuntu.com/usn/USN-2838-2 - |
Information
Published : 2016-04-14 14:59
Updated : 2024-11-21 02:38
NVD link : CVE-2015-8560
Mitre link : CVE-2015-8560
CVE.ORG link : CVE-2015-8560
JSON object : View
Products Affected
debian
- debian_linux
linuxfoundation
- foomatic-filters
- cups-filters
canonical
- ubuntu_linux
CWE