Bug 1291227 (CVE-2015-8560)
Summary: | CVE-2015-8560 cups-filters: foomatic-rip did not consider semicolon as illegal shell escape character | ||
---|---|---|---|
Product: | [Other] Security Response | Reporter: | Adam Mariš <amaris> |
Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> |
Status: | CLOSED ERRATA | QA Contact: | |
Severity: | medium | Docs Contact: | |
Priority: | medium | ||
Version: | unspecified | CC: | carnil, jpopelka, slawomir, twaugh |
Target Milestone: | --- | Keywords: | Security |
Target Release: | --- | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | |||
Fixed In Version: | cups-filters 1.4.0 | Doc Type: | Bug Fix |
Doc Text: |
It was discovered that foomatic-rip failed to remove all shell special characters from inputs used to construct command lines for external programs run by the filter. An attacker could possibly use this flaw to execute arbitrary commands.
|
Story Points: | --- |
Clone Of: | Environment: | ||
Last Closed: | 2019-06-08 02:46:27 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | 1291228, 1291229, 1301076, 1301077 | ||
Bug Blocks: | 1287524, 1291230 |
Description
Adam Mariš
2015-12-14 11:17:41 UTC
Created foomatic tracking bugs for this issue: Affects: fedora-all [bug 1291229] Created cups-filters tracking bugs for this issue: Affects: fedora-all [bug 1291228] In terms of affected products and components (with respect to foomatic-filters packaged in cups-fitlers or foomatic packages), this issue is similar to CVE-2015-8327, see bug 1287523 comment 2. cups-filters-1.4.0-1.fc23 has been pushed to the Fedora 23 stable repository. If problems still persist, please make note of it in this bug report. cups-filters-1.4.0-1.fc22 has been pushed to the Fedora 22 stable repository. If problems still persist, please make note of it in this bug report. This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Via RHSA-2016:0491 https://rhn.redhat.com/errata/RHSA-2016-0491.html |