Back to search
CVE-2010-4267
Published: Jan 20, 2011
Modified: Aug 7, 2024
PUBLISHED
Description
Stack-based buffer overflow in the hpmud_get_pml function in io/hpmud/pml.c in Hewlett-Packard Linux Imaging and Printing (HPLIP) 1.6.7, 3.9.8, 3.10.9, and probably other versions allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted SNMP response with a large length value.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
42956
third-party-advisory
x_refsource_SECUNIA
43068
third-party-advisory
x_refsource_SECUNIA
70498
vdb-entry
x_refsource_OSVDB
43102
third-party-advisory
x_refsource_SECUNIA
ADV-2011-0136
vdb-entry
x_refsource_VUPEN
ADV-2011-0212
vdb-entry
x_refsource_VUPEN
45833
vdb-entry
x_refsource_BID
43022
third-party-advisory
x_refsource_SECUNIA
ADV-2011-0228
vdb-entry
x_refsource_VUPEN
https://bugzilla.redhat.com/attachment.cgi?id=468455&action=diff
x_refsource_MISC
SUSE-SR:2011:005
vendor-advisory
x_refsource_SUSE
ADV-2011-0211
vdb-entry
x_refsource_VUPEN
SUSE-SR:2011:002
vendor-advisory
x_refsource_SUSE
FEDORA-2011-0524
vendor-advisory
x_refsource_FEDORA
MDVSA-2011:013
vendor-advisory
x_refsource_MANDRIVA
RHSA-2011:0154
vendor-advisory
x_refsource_REDHAT
ADV-2011-0243
vdb-entry
x_refsource_VUPEN
USN-1051-1
vendor-advisory
x_refsource_UBUNTU
43083
third-party-advisory
x_refsource_SECUNIA
hplip-hpmudgetpml-bo(64738)
vdb-entry
x_refsource_XF
ADV-2011-0160
vdb-entry
x_refsource_VUPEN
DSA-2152
vendor-advisory
x_refsource_DEBIAN
FEDORA-2011-0525
vendor-advisory
x_refsource_FEDORA
GLSA-201203-17
vendor-advisory
x_refsource_GENTOO
1024967
vdb-entry
x_refsource_SECTRACK
42939
third-party-advisory
x_refsource_SECUNIA
48441
third-party-advisory
x_refsource_SECUNIA
https://bugzilla.redhat.com/show_bug.cgi?id=662740
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now