CVE-2015-3258
published 2015-07-14CVE-2015-3258: Heap-based buffer overflow in the WriteProlog function in filter/texttopdf.c in texttopdf in cups-filters before 1.0.70 allows remote attackers to cause a…
PriorityP346high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
8.29%
94.3th percentile
Heap-based buffer overflow in the WriteProlog function in filter/texttopdf.c in texttopdf in cups-filters before 1.0.70 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a small line size in a print job.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | cups | >= 0 < 1.5.0-16 | 1.5.0-16 |
| apple | cups | >= 0 < 1.5.0-16 | 1.5.0-16 |
| apple | cups | >= 0 < 1.5.0-16 | 1.5.0-16 |
| apple | cups | >= 0 < 1.5.0-16 | 1.5.0-16 |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | cups | < cups 1.5.0-16 (bookworm) | cups 1.5.0-16 (bookworm) |
| debian | cups-filters | < cups 1.5.0-16 (bookworm) | cups 1.5.0-16 (bookworm) |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| linuxfoundation | cups-filters | <= 1.0.70 | — |
| linuxfoundation | cups-filters | >= 0 < 1.0.70-1 | 1.0.70-1 |
| linuxfoundation | cups-filters | >= 0 < 1.0.70-1 | 1.0.70-1 |
| linuxfoundation | cups-filters | >= 0 < 1.0.70-1 | 1.0.70-1 |
| linuxfoundation | cups-filters | >= 0 < 1.0.70-1 | 1.0.70-1 |
| linuxfoundation | cups-filters | >= 0 < 1.0.52-0ubuntu1.5 | 1.0.52-0ubuntu1.5 |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
vendor_ubuntu7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-r69p-hhx7-vvhc: Heap-based buffer overflow in the WriteProlog function in filter/texttopdf
ghsa_unreviewed·2022-05-17
CVE-2015-3258 [HIGH] CWE-119 GHSA-r69p-hhx7-vvhc: Heap-based buffer overflow in the WriteProlog function in filter/texttopdf
Heap-based buffer overflow in the WriteProlog function in filter/texttopdf.c in texttopdf in cups-filters before 1.0.70 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a small line size in a print job.
OSV
CVE-2015-3258: Heap-based buffer overflow in the WriteProlog function in filter/texttopdf
osv·2015-07-14·CVSS 7.5
CVE-2015-3258 [HIGH] CVE-2015-3258: Heap-based buffer overflow in the WriteProlog function in filter/texttopdf
Heap-based buffer overflow in the WriteProlog function in filter/texttopdf.c in texttopdf in cups-filters before 1.0.70 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a small line size in a print job.
OSV
cups-filters vulnerabilities
osv·2015-07-06·CVSS 7.5
CVE-2015-3258 [HIGH] cups-filters vulnerabilities
cups-filters vulnerabilities
Petr Sklenar discovered that the cups-filters texttopdf filter incorrectly
handled line sizes. A remote attacker could use this issue to cause a
denial of service, or possibly execute arbitrary code as the lp user.
(CVE-2015-3258, CVE-2015-3279)
Ubuntu
cups-filters vulnerabilities
vendor_ubuntu·2015-07-06·CVSS 7.5
CVE-2015-3258 [HIGH] cups-filters vulnerabilities
Title: cups-filters vulnerabilities
Summary: cups-filters could be made to crash or run programs as the lp user if it
processed a specially crafted print job.
Petr Sklenar discovered that the cups-filters texttopdf filter incorrectly
handled line sizes. A remote attacker could use this issue to cause a
denial of service, or possibly execute arbitrary code as the lp user.
(CVE-2015-3258, CVE-2015-3279)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
cups-filters: texttopdf heap-based buffer overflow
vendor_redhat·2015-06-26·CVSS 7.5
CVE-2015-3258 [HIGH] CWE-122 cups-filters: texttopdf heap-based buffer overflow
cups-filters: texttopdf heap-based buffer overflow
Heap-based buffer overflow in the WriteProlog function in filter/texttopdf.c in texttopdf in cups-filters before 1.0.70 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a small line size in a print job.
A heap-based buffer overflow was discovered in the way the texttopdf utility of cups-filter processed print jobs with a specially crafted line size. An attacker able to submit print jobs could use this flaw to crash texttopdf or, possibly, execute arbitrary code with the privileges of the "lp" user.
Debian
CVE-2015-3258: cups - Heap-based buffer overflow in the WriteProlog function in filter/texttopdf.c in ...
vendor_debian·2015·CVSS 7.5
CVE-2015-3258 [HIGH] CVE-2015-3258: cups - Heap-based buffer overflow in the WriteProlog function in filter/texttopdf.c in ...
Heap-based buffer overflow in the WriteProlog function in filter/texttopdf.c in texttopdf in cups-filters before 1.0.70 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a small line size in a print job.
Scope: local
bookworm: resolved (fixed in 1.5.0-16)
bullseye: resolved (fixed in 1.5.0-16)
forky: resolved (fixed in 1.5.0-16)
sid: resolved (fixed in 1.5.0-16)
trixie: resolved (fixed in 1.5.0-16)
No detection rules found.
No public exploits indexed.
http://bzr.linuxfoundation.org/loggerhead/openprinting/cups-filters/revision/7363http://lists.opensuse.org/opensuse-updates/2015-07/msg00033.htmlhttp://rhn.redhat.com/errata/RHSA-2015-2360.htmlhttp://ubuntu.com/usn/usn-2659-1http://www.debian.org/security/2015/dsa-3303http://www.openwall.com/lists/oss-security/2015/06/26/4http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.htmlhttp://www.securityfocus.com/bid/75436https://bugzilla.redhat.com/show_bug.cgi?id=1235385https://security.gentoo.org/glsa/201510-08http://bzr.linuxfoundation.org/loggerhead/openprinting/cups-filters/revision/7363http://lists.opensuse.org/opensuse-updates/2015-07/msg00033.htmlhttp://rhn.redhat.com/errata/RHSA-2015-2360.htmlhttp://ubuntu.com/usn/usn-2659-1http://www.debian.org/security/2015/dsa-3303http://www.openwall.com/lists/oss-security/2015/06/26/4http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.htmlhttp://www.securityfocus.com/bid/75436https://bugzilla.redhat.com/show_bug.cgi?id=1235385https://security.gentoo.org/glsa/201510-08
2015-07-14
Published