CVE-2023-47268

NameCVE-2023-47268
DescriptionIn libslic3r/GCode/PostProcessor.cpp in Prusa PrusaSlicer through 2.6.1, a crafted 3mf project file can execute arbitrary code on a host where the project is sliced and G-code exported.
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
slic3r-prusa (PTS)bullseye2.3.0+dfsg-1undetermined
bookworm2.5.0+dfsg-4undetermined
trixie2.9.2+dfsg-1undetermined
forky, sid2.9.5+dfsg-1undetermined

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
slic3r-prusasource(unstable)undetermined

Notes

https://raw.githubusercontent.com/vulncheck-oss/0day.today.archive/main/local-exploits/39547.txt
check

Search for package or bug name: Reporting problems