Lucene search

K
ubuntucveUbuntu.comUB:CVE-2011-2899
HistoryAug 31, 2011 - 12:00 a.m.

CVE-2011-2899

2011-08-3100:00:00
ubuntu.com
ubuntu.com
13

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

EPSS

0.005

Percentile

77.1%

pysmb.py in system-config-printer 0.6.x and 0.7.x, as used in foomatic-gui
and possibly other products, allows remote SMB servers to execute arbitrary
commands via shell metacharacters in the (1) NetBIOS or (2) workgroup name,
which are not properly handled when searching for network printers.

Bugs

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

EPSS

0.005

Percentile

77.1%