CRITICAL · 9.8

CVE-2019-10627

Integer overflow to buffer overflow vulnerability in PostScript image handling code used by the PostScript- and PDF-compatible interpreters due to incorrect buffer size calculation. in PostScript and ...

Vulnerability Description

Integer overflow to buffer overflow vulnerability in PostScript image handling code used by the PostScript- and PDF-compatible interpreters due to incorrect buffer size calculation. in PostScript and PDF printers that use IPS versions prior to 2019.2 in PostScript and PDF printers that use IPS versions prior to 2019.2

CVSS Score

9.8

CRITICAL

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
QualcommIps< 2019.2
HpD9L63A Firmware< 001.1937c
HpD9L63A-
HpD9L64A Firmware< 001.1937c
HpD9L64A-
HpT0G70A Firmware< 001.1937c
HpT0G70A-
HpJ3P65A Firmware< 001.1937c
HpJ3P65A-
HpJ3P68A Firmware< 001.1937c
HpJ3P68A-
HpJ6U57A Firmware< 001.1937d
HpJ6U57A-
HpJ6U57B Firmware< 001.1937d
HpJ6U57B-
HpJ9V80A Firmware< 001.1937d
HpJ9V80A-
HpJ9V80B Firmware< 001.1937d
HpJ9V80B-
HpJ6U55A Firmware< 001.1937d

Related Weaknesses (CWE)

References

FAQ

What is CVE-2019-10627?

CVE-2019-10627 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Integer overflow to buffer overflow vulnerability in PostScript image handling code used by the PostScript- and PDF-compatible interpreters due to incorrect buffer size calculation. in PostScript and ...

How severe is CVE-2019-10627?

CVE-2019-10627 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.

Is there a patch for CVE-2019-10627?

Check the references section above for vendor advisories and patch information. Affected products include: Qualcomm Ips, Hp D9L63A Firmware, Hp D9L63A, Hp D9L64A Firmware, Hp D9L64A.