CVE-2010-4267
hplip - buffer overflow
EPSS 10.8%
描述
Stack-based buffer overflow in the hpmud_get_pml function in io/hpmud/pml.c in Hewlett-Packard Linux Imaging and Printing (HPLIP) 1.6.7, 3.9.8, 3.10.9, and probably other versions allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted SNMP response with a large length value.
如何修補 CVE-2010-4267
要修補 CVE-2010-4267,請將受影響套件升級到下列已修補版本。
- Debian/hplip—升級至 3.10.6-2 或更新版本
- Debian/hplip—升級至 2.8.6.b-4+lenny1 或更新版本
CVE-2010-4267 正在被利用嗎?
中等 — EPSS 為 10.8%,可持續追蹤但非最高優先。
受影響套件(2)
- from 0, < 3.10.6-2
- from 0, < 2.8.6.b-4+lenny1