Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-8560

Опубликовано: 14 апр. 2016
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5
CVSS3: 7.3

Описание

Incomplete blacklist vulnerability in util.c in foomatic-rip in cups-filters 1.0.42 before 1.4.0 and in foomatic-filters in Foomatic 4.0.x allows remote attackers to execute arbitrary commands via a ; (semicolon) character in a print job, a different vulnerability than CVE-2015-8327.

РелизСтатусПримечание
devel

not-affected

1.4.0-1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1.0.52-0ubuntu1.7]]
esm-infra/xenial

not-affected

1.4.0-1
precise

not-affected

code not present
trusty

released

1.0.52-0ubuntu1.7
trusty/esm

DNE

trusty was released [1.0.52-0ubuntu1.7]
upstream

released

1.4.0-1
vivid

released

1.0.67-0ubuntu2.6
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

Показывать по

РелизСтатусПримечание
devel

not-affected

4.0.17-7
esm-apps/xenial

not-affected

4.0.17-7
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [4.0.17-1+deb7u1ubuntu0.14.04.1]]
precise

released

4.0.16-0ubuntu0.4
trusty

released

4.0.17-1+deb7u1ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [4.0.17-1+deb7u1ubuntu0.14.04.1]
upstream

needs-triage

vivid

ignored

end of life
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

Показывать по

EPSS

Процентиль: 92%
0.08557
Низкий

7.5 High

CVSS2

7.3 High

CVSS3

Связанные уязвимости

redhat
больше 9 лет назад

Incomplete blacklist vulnerability in util.c in foomatic-rip in cups-filters 1.0.42 before 1.4.0 and in foomatic-filters in Foomatic 4.0.x allows remote attackers to execute arbitrary commands via a ; (semicolon) character in a print job, a different vulnerability than CVE-2015-8327.

CVSS3: 7.3
nvd
больше 9 лет назад

Incomplete blacklist vulnerability in util.c in foomatic-rip in cups-filters 1.0.42 before 1.4.0 and in foomatic-filters in Foomatic 4.0.x allows remote attackers to execute arbitrary commands via a ; (semicolon) character in a print job, a different vulnerability than CVE-2015-8327.

CVSS3: 7.3
debian
больше 9 лет назад

Incomplete blacklist vulnerability in util.c in foomatic-rip in cups-f ...

CVSS3: 7.3
github
больше 3 лет назад

Incomplete blacklist vulnerability in util.c in foomatic-rip in cups-filters 1.0.42 before 1.4.0 and in foomatic-filters in Foomatic 4.0.x allows remote attackers to execute arbitrary commands via a ; (semicolon) character in a print job, a different vulnerability than CVE-2015-8327.

suse-cvrf
больше 9 лет назад

Security update for foomatic-filters

EPSS

Процентиль: 92%
0.08557
Низкий

7.5 High

CVSS2

7.3 High

CVSS3