Lucene search

K
redhatcveRedhat.comRH:CVE-2020-12861
HistoryJun 24, 2020 - 1:51 p.m.

CVE-2020-12861

2020-06-2413:51:00
redhat.com
access.redhat.com
13

0.007 Low

EPSS

Percentile

80.8%

A flaw was found in sane-backends in versions prior to 1.0.30. A heap buffer overflow in epsonds_net_read function could lead to a remote denial of service. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

Mitigation

This flaw can be mitigated by limiting network scanner discovery to a trusted subnet via the "net" configuration in the "/etc/sane.d/epsonds.conf" configuration file. Also, automatic network scanner discovery can be turned off by commenting out the line "net autodiscovery" in the same configuration file.