CVE-2015-3279
published 2015-07-14CVE-2015-3279: Integer overflow in filter/texttopdf.c in texttopdf in cups-filters before 1.0.71 allows remote attackers to cause a denial of service (crash) or possibly…
PriorityP342high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
6.90%
93.4th percentile
Integer overflow in filter/texttopdf.c in texttopdf in cups-filters before 1.0.71 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted line size in a print job, which triggers a heap-based buffer overflow.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | cups | >= 0 < 1.5.0-16 | 1.5.0-16 |
| apple | cups | >= 0 < 1.5.0-16 | 1.5.0-16 |
| apple | cups | >= 0 < 1.5.0-16 | 1.5.0-16 |
| apple | cups | >= 0 < 1.5.0-16 | 1.5.0-16 |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | cups | < cups 1.5.0-16 (bookworm) | cups 1.5.0-16 (bookworm) |
| debian | cups-filters | < cups 1.5.0-16 (bookworm) | cups 1.5.0-16 (bookworm) |
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| linuxfoundation | cups-filters | <= 1.0.70 | — |
| linuxfoundation | cups-filters | >= 0 < 1.0.71-1 | 1.0.71-1 |
| linuxfoundation | cups-filters | >= 0 < 1.0.71-1 | 1.0.71-1 |
| linuxfoundation | cups-filters | >= 0 < 1.0.71-1 | 1.0.71-1 |
| linuxfoundation | cups-filters | >= 0 < 1.0.71-1 | 1.0.71-1 |
| linuxfoundation | cups-filters | >= 0 < 1.0.52-0ubuntu1.5 | 1.0.52-0ubuntu1.5 |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
vendor_ubuntu7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-m849-v2w8-6c9x: Integer overflow in filter/texttopdf
ghsa_unreviewed·2022-05-17
CVE-2015-3279 [HIGH] GHSA-m849-v2w8-6c9x: Integer overflow in filter/texttopdf
Integer overflow in filter/texttopdf.c in texttopdf in cups-filters before 1.0.71 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted line size in a print job, which triggers a heap-based buffer overflow.
OSV
CVE-2015-3279: Integer overflow in filter/texttopdf
osv·2015-07-14·CVSS 7.5
CVE-2015-3279 [HIGH] CVE-2015-3279: Integer overflow in filter/texttopdf
Integer overflow in filter/texttopdf.c in texttopdf in cups-filters before 1.0.71 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted line size in a print job, which triggers a heap-based buffer overflow.
OSV
cups-filters vulnerabilities
osv·2015-07-06·CVSS 7.5
CVE-2015-3258 [HIGH] cups-filters vulnerabilities
cups-filters vulnerabilities
Petr Sklenar discovered that the cups-filters texttopdf filter incorrectly
handled line sizes. A remote attacker could use this issue to cause a
denial of service, or possibly execute arbitrary code as the lp user.
(CVE-2015-3258, CVE-2015-3279)
Ubuntu
cups-filters vulnerabilities
vendor_ubuntu·2015-07-06·CVSS 7.5
CVE-2015-3258 [HIGH] cups-filters vulnerabilities
Title: cups-filters vulnerabilities
Summary: cups-filters could be made to crash or run programs as the lp user if it
processed a specially crafted print job.
Petr Sklenar discovered that the cups-filters texttopdf filter incorrectly
handled line sizes. A remote attacker could use this issue to cause a
denial of service, or possibly execute arbitrary code as the lp user.
(CVE-2015-3258, CVE-2015-3279)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
cups-filters: texttopdf integer overflow
vendor_redhat·2015-07-02·CVSS 7.5
CVE-2015-3279 [HIGH] CWE-190 cups-filters: texttopdf integer overflow
cups-filters: texttopdf integer overflow
Integer overflow in filter/texttopdf.c in texttopdf in cups-filters before 1.0.71 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted line size in a print job, which triggers a heap-based buffer overflow.
An integer overflow flaw, leading to a heap-based buffer overflow, was discovered in the way the texttopdf utility of cups-filter processed print jobs with a specially crafted line size. An attacker able to submit print jobs could use this flaw to crash texttopdf or, possibly, execute arbitrary code with the privileges of the "lp" user.
Debian
CVE-2015-3279: cups - Integer overflow in filter/texttopdf.c in texttopdf in cups-filters before 1.0.7...
vendor_debian·2015·CVSS 7.5
CVE-2015-3279 [HIGH] CVE-2015-3279: cups - Integer overflow in filter/texttopdf.c in texttopdf in cups-filters before 1.0.7...
Integer overflow in filter/texttopdf.c in texttopdf in cups-filters before 1.0.71 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted line size in a print job, which triggers a heap-based buffer overflow.
Scope: local
bookworm: resolved (fixed in 1.5.0-16)
bullseye: resolved (fixed in 1.5.0-16)
forky: resolved (fixed in 1.5.0-16)
sid: resolved (fixed in 1.5.0-16)
trixie: resolved (fixed in 1.5.0-16)
No detection rules found.
No public exploits indexed.
http://bzr.linuxfoundation.org/loggerhead/openprinting/cups-filters/revision/7365http://bzr.linuxfoundation.org/loggerhead/openprinting/cups-filters/revision/7366#NEWShttp://bzr.linuxfoundation.org/loggerhead/openprinting/cups-filters/revision/7369http://lists.opensuse.org/opensuse-updates/2015-07/msg00033.htmlhttp://rhn.redhat.com/errata/RHSA-2015-2360.htmlhttp://ubuntu.com/usn/usn-2659-1http://www.debian.org/security/2015/dsa-3303http://www.openwall.com/lists/oss-security/2015/07/03/2http://www.openwall.com/lists/oss-security/2015/07/03/5http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.htmlhttp://www.securityfocus.com/bid/75557https://bugzilla.redhat.com/show_bug.cgi?id=1238990https://security.gentoo.org/glsa/201510-08http://bzr.linuxfoundation.org/loggerhead/openprinting/cups-filters/revision/7365http://bzr.linuxfoundation.org/loggerhead/openprinting/cups-filters/revision/7366#NEWShttp://bzr.linuxfoundation.org/loggerhead/openprinting/cups-filters/revision/7369http://lists.opensuse.org/opensuse-updates/2015-07/msg00033.htmlhttp://rhn.redhat.com/errata/RHSA-2015-2360.htmlhttp://ubuntu.com/usn/usn-2659-1http://www.debian.org/security/2015/dsa-3303http://www.openwall.com/lists/oss-security/2015/07/03/2http://www.openwall.com/lists/oss-security/2015/07/03/5http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.htmlhttp://www.securityfocus.com/bid/75557https://bugzilla.redhat.com/show_bug.cgi?id=1238990https://security.gentoo.org/glsa/201510-08
2015-07-14
Published