Логотип exploitDog
bind:"CVE-2015-1158"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2015-1158"

Количество 10

Количество 10

ubuntu логотип

CVE-2015-1158

около 10 лет назад

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

CVSS2: 10
EPSS: Высокий
redhat логотип

CVE-2015-1158

около 10 лет назад

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

CVSS2: 6.8
EPSS: Высокий
nvd логотип

CVE-2015-1158

около 10 лет назад

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

CVSS2: 10
EPSS: Высокий
debian логотип

CVE-2015-1158

около 10 лет назад

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 ...

CVSS2: 10
EPSS: Высокий
github логотип

GHSA-f3f2-vc32-jrrx

больше 3 лет назад

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

EPSS: Высокий
fstec логотип

BDU:2015-10444

около 10 лет назад

Уязвимость сервера печати CUPS, позволяющая нарушителю изменить файл конфигурации устройства или выполнить произвольный код

CVSS2: 10
EPSS: Высокий
suse-cvrf логотип

SUSE-SU-2015:1044-2

около 10 лет назад

Security update for cups154

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1044-1

около 10 лет назад

Security update for cups154

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1041-1

около 10 лет назад

Security update for cups

EPSS: Низкий
oracle-oval логотип

ELSA-2015-1123

около 10 лет назад

ELSA-2015-1123: cups security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2015-1158

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

CVSS2: 10
77%
Высокий
около 10 лет назад
redhat логотип
CVE-2015-1158

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

CVSS2: 6.8
77%
Высокий
около 10 лет назад
nvd логотип
CVE-2015-1158

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

CVSS2: 10
77%
Высокий
около 10 лет назад
debian логотип
CVE-2015-1158

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 ...

CVSS2: 10
77%
Высокий
около 10 лет назад
github логотип
GHSA-f3f2-vc32-jrrx

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

77%
Высокий
больше 3 лет назад
fstec логотип
BDU:2015-10444

Уязвимость сервера печати CUPS, позволяющая нарушителю изменить файл конфигурации устройства или выполнить произвольный код

CVSS2: 10
77%
Высокий
около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1044-2

Security update for cups154

около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1044-1

Security update for cups154

около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1041-1

Security update for cups

около 10 лет назад
oracle-oval логотип
ELSA-2015-1123

ELSA-2015-1123: cups security update (IMPORTANT)

около 10 лет назад

Уязвимостей на страницу