Stack-based buffer overflow in CUPS - CVE-2019-8675

 

Stack-based buffer overflow in CUPS - CVE-2019-8675

Published: November 27, 2019


Vulnerability identifier: #VU23042
CSH Severity: High
CVSS v4: 8.7 [CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2019-8675
CWE-ID: CWE-121
Exploitation vector: Adjecent network
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The vulnerability exists due to a boundary error when processing SNMP requests within the asn1_get_type() function in cups/snmp.c. A remote attacker can send a specially crafted SNMP request to the CUPS service, trigger stack-based buffer overflow and execute arbitrary code on the target system.

Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.


Affected software

CUPS
cups (Red Hat package)
cups (Alpine package)
cups
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for Power, big endian
Red Hat Enterprise Linux for Scientific Computing
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for x86_64
Opensuse
Fedora
Juniper Secure Analytics (JSA)
Red Hat OpenShift Container Platform
IBM Qradar SIEM

How to mitigate CVE-2019-8675

Install updates from vendor's website.

CUPS - update to 2.2.12
cups (Red Hat package) - addressed in versions 1.6.3-51.el7, 2.2.6-33.el8
cups (Alpine package) - update to 2.2.12-r0
Juniper Secure Analytics (JSA) - update to 7.5.0 UP8 IF03
cups - addressed in versions 2.2.8-12.fc29, 2.2.12-1.fc30
Red Hat OpenShift Container Platform - update to 4.3.40
IBM Qradar SIEM - update to 7.5.0 Update Pack 8 IF02

External References

Related Security Bulletins