Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-2228

Опубликовано: 06 дек. 2019
Источник: debian

Описание

In array_find of array.c, there is a possible out-of-bounds read due to an incorrect bounds check. This could lead to local information disclosure in the printer spooler with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-111210196

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cupsfixed2.3.1-1package
cupsfixed2.2.10-6+deb10u2busterpackage
cupsfixed2.2.1-8+deb9u5stretchpackage

Примечания

  • https://github.com/apple/cups/commit/b018978c278d42c7abf78941251b887c95dfdb07 (master, v2.3.1)

  • https://github.com/apple/cups/commit/8c9b3606cca99e5dfc51784a9de1634345db7579 (v2.2.13)

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 6 лет назад

In array_find of array.c, there is a possible out-of-bounds read due to an incorrect bounds check. This could lead to local information disclosure in the printer spooler with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-111210196

CVSS3: 5.5
nvd
около 6 лет назад

In array_find of array.c, there is a possible out-of-bounds read due to an incorrect bounds check. This could lead to local information disclosure in the printer spooler with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-111210196

github
больше 3 лет назад

In array_find of array.c, there is a possible out-of-bounds read due to an incorrect bounds check. This could lead to local information disclosure in the printer spooler with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-111210196

CVSS3: 5.5
fstec
около 6 лет назад

Уязвимость массива array_find сервера печати CUPS, связанная с чтением за границами буфера памяти, позволяющая нарушителю получить доступ к конфиденциальным данным