CVE-2019-2180

NameCVE-2019-2180
DescriptionIn ippSetValueTag of ipp.c in Android 8.0, 8.1 and 9, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure from the printer service with no additional execution privileges needed. User interaction is not needed for exploitation.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub code/issues, web search, more)
ReferencesDLA-1893-1
NVD severitylow
Debian Bugs934957

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
cups (PTS)jessie1.7.5-11+deb8u2vulnerable
jessie (security)1.7.5-11+deb8u7fixed
stretch2.2.1-8+deb9u5fixed
stretch (security)2.2.1-8+deb9u2vulnerable
buster2.2.10-6+deb10u2fixed
bullseye2.3.1-7fixed
sid2.3.1-11fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
cupssource(unstable)2.2.12-1934957
cupssourcebuster2.2.10-6+deb10u1
cupssourcejessie1.7.5-11+deb8u5DLA-1893-1
cupssourcestretch2.2.1-8+deb9u4

Notes

Covers the "Fixed IPP buffer overflow (rdar://50035411)" angle of
https://github.com/apple/cups/commit/f24e6cf6a39300ad0c3726a41a4aab51ad54c109

Search for package or bug name: Reporting problems