CVE-2019-2180

NameCVE-2019-2180
DescriptionIn ippSetValueTag of ipp.c in Android 8.0, 8.1 and 9, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure from the printer service with no additional execution privileges needed. User interaction is not needed for exploitation.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub code/issues, web search, more)
ReferencesDLA-1893-1
NVD severitylow (attack range: local)
Debian Bugs934957

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
cups (PTS)jessie1.7.5-11+deb8u2vulnerable
jessie (security)1.7.5-11+deb8u5fixed
stretch2.2.1-8+deb9u4fixed
stretch (security)2.2.1-8+deb9u2vulnerable
buster2.2.10-6+deb10u1fixed
bullseye2.3.0-3fixed
sid2.3.0-5fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
cupssource(unstable)2.2.12-1low934957
cupssourcebuster2.2.10-6+deb10u1low
cupssourcejessie1.7.5-11+deb8u5lowDLA-1893-1
cupssourcestretch2.2.1-8+deb9u4low

Notes

Covers the "Fixed IPP buffer overflow (rdar://50035411)" angle of
https://github.com/apple/cups/commit/f24e6cf6a39300ad0c3726a41a4aab51ad54c109

Search for package or bug name: Reporting problems