Описание
The add_job function in scheduler/ipp.c in CUPS before 2.2.6, when D-Bus support is enabled, can be crashed by remote attackers by sending print jobs with an invalid username, related to a D-Bus notification.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | released | 2.2.4-7ubuntu3.1 |
| bionic | not-affected | 2.2.6-5 |
| devel | not-affected | 2.2.6-5 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [1.7.2-0ubuntu1.10]] |
| esm-infra/bionic | not-affected | 2.2.6-5 |
| esm-infra/xenial | released | 2.1.3-4ubuntu0.5 |
| precise/esm | DNE | |
| trusty | released | 1.7.2-0ubuntu1.10 |
| trusty/esm | DNE | trusty was released [1.7.2-0ubuntu1.10] |
| upstream | released | 2.2.6-1 |
Показывать по
EPSS
3.5 Low
CVSS2
5.3 Medium
CVSS3
Связанные уязвимости
The add_job function in scheduler/ipp.c in CUPS before 2.2.6, when D-Bus support is enabled, can be crashed by remote attackers by sending print jobs with an invalid username, related to a D-Bus notification.
The add_job function in scheduler/ipp.c in CUPS before 2.2.6, when D-Bus support is enabled, can be crashed by remote attackers by sending print jobs with an invalid username, related to a D-Bus notification.
The add_job function in scheduler/ipp.c in CUPS before 2.2.6, when D-B ...
The add_job function in scheduler/ipp.c in CUPS before 2.2.6, when D-Bus support is enabled, can be crashed by remote attackers by sending print jobs with an invalid username, related to a D-Bus notification.
Уязвимость функции add_job (scheduler/ipp.c) сервера печати CUPS, позволяющая нарушителю оказать воздействие на целостность данных
EPSS
3.5 Low
CVSS2
5.3 Medium
CVSS3