Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2017-15400

Опубликовано: 27 окт. 2017
Источник: redhat
CVSS3: 7.3
EPSS Низкий

Описание

Insufficient restriction of IPP filters in CUPS in Google Chrome OS prior to 62.0.3202.74 allowed a remote attacker to execute a command with the same privileges as the cups daemon via a crafted PPD file, aka a printer zeroconfig CRLF issue.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5cupsNot affected
Red Hat Enterprise Linux 6cupsNot affected
Red Hat Enterprise Linux 7cupsNot affected
Red Hat Enterprise Linux 8cupsNot affected
Red Hat Virtualization 4cupsNot affected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-266
https://bugzilla.redhat.com/show_bug.cgi?id=1607288cups: Insufficient restriction of IPP filters allows a remote attacker to execute commands with the privilege level of cups daemon

EPSS

Процентиль: 61%
0.00411
Низкий

7.3 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
почти 8 лет назад

Insufficient restriction of IPP filters in CUPS in Google Chrome OS prior to 62.0.3202.74 allowed a remote attacker to execute a command with the same privileges as the cups daemon via a crafted PPD file, aka a printer zeroconfig CRLF issue.

CVSS3: 7.8
nvd
почти 8 лет назад

Insufficient restriction of IPP filters in CUPS in Google Chrome OS prior to 62.0.3202.74 allowed a remote attacker to execute a command with the same privileges as the cups daemon via a crafted PPD file, aka a printer zeroconfig CRLF issue.

CVSS3: 7.8
debian
почти 8 лет назад

Insufficient restriction of IPP filters in CUPS in Google Chrome OS pr ...

CVSS3: 7.8
github
больше 3 лет назад

Insufficient restriction of IPP filters in CUPS in Google Chrome OS prior to 62.0.3202.74 allowed a remote attacker to execute a command with the same privileges as the cups daemon via a crafted PPD file, aka a printer zeroconfig CRLF issue.

EPSS

Процентиль: 61%
0.00411
Низкий

7.3 High

CVSS3