CVE-2020-10001 - log back

CVE-2020-10001 edited at 06 Feb 2021 16:53:36
Type
- Arbitrary code execution
+ Information disclosure
CVE-2020-10001 edited at 03 Feb 2021 08:41:06
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Local
Type
- Unknown
+ Arbitrary code execution
Description
+ A security issue was found in cups before version 2.3.3op2. A missing length check in the ippReadIO function could lead to a buffer over-read.
References
+ https://bugzilla.redhat.com/show_bug.cgi?id=1921680
+ https://bugzilla.redhat.com/attachment.cgi?id=1752147
+ https://github.com/OpenPrinting/cups/commit/efbea1742bd30f842fbbfb87a473e5c84f4162f9
Notes
CVE-2020-10001 created at 03 Feb 2021 08:35:23