CVE-2015-8107

Severity
7.8HIGH
EPSS
1.8%
top 17.31%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 13
Latest updateMay 17

Description

Format string vulnerability in GNU a2ps 4.14 allows remote attackers to execute arbitrary code.

CVSS vector

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages2 packages

Debiana2ps< 1:4.14-1.2+3
NVDgnu/a2ps4.14

🔴Vulnerability Details

3
GHSA
GHSA-3qwx-fr6j-m6r7: Format string vulnerability in GNU a2ps 42022-05-17
CVEList
CVE-2015-8107: Format string vulnerability in GNU a2ps 42017-04-13
OSV
CVE-2015-8107: Format string vulnerability in GNU a2ps 42017-04-13

📋Vendor Advisories

2
Red Hat
a2ps: output_file() format string flaw2015-11-16
Debian
CVE-2015-8107: a2ps - Format string vulnerability in GNU a2ps 4.14 allows remote attackers to execute ...2015

💬Community

3
Bugzilla
CVE-2015-8107 a2ps: format string vulnerability leading to code execution [fedora-all]2015-11-18
Bugzilla
CVE-2015-8107 a2ps: format string vulnerability leading to code execution [epel-6]2015-11-18
Bugzilla
CVE-2015-8107 a2ps: output_file() format string flaw2015-11-18