Lucene search

K
ubuntucveUbuntu.comUB:CVE-2008-3641
HistoryOct 10, 2008 - 12:00 a.m.

CVE-2008-3641

2008-10-1000:00:00
ubuntu.com
ubuntu.com
19

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.92

Percentile

99.0%

The Hewlett-Packard Graphics Language (HPGL) filter in CUPS before 1.3.9
allows remote attackers to execute arbitrary code via crafted pen width and
pen color opcodes that overwrite arbitrary memory.

Notes

Author Note
jdstrand shellcode in the wild
OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchcupsys< 1.2.2-0ubuntu0.6.06.11UNKNOWN
ubuntu7.04noarchcupsys< 1.2.8-0ubuntu8.6UNKNOWN
ubuntu7.10noarchcupsys< 1.3.2-1ubuntu7.8UNKNOWN
ubuntu8.04noarchcupsys< 1.3.7-1ubuntu3.1UNKNOWN

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.92

Percentile

99.0%