Vulnerability Description
A stack based buffer overflow vulnerability is present in OpenPrinting ippusbxd 1.34. A specially configured printer that supports IPP-over-USB can cause a buffer overflow which can lead to a arbitrary code execution in a privileged service. To trigger the vulnerability, a malicious device would need to be connected to the vulnerable system over USB.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Openprinting | Ippusbxd Firmware | 1.34 |
| Openprinting | Ippusbxd | - |
Related Weaknesses (CWE)
References
- https://talosintelligence.com/vulnerability_reports/TALOS-2024-2071ExploitMitigationThird Party Advisory
- https://www.talosintelligence.com/vulnerability_reports/TALOS-2024-2071
FAQ
What is CVE-2024-45062?
CVE-2024-45062 is a vulnerability with a CVSS score of 6.4 (MEDIUM). A stack based buffer overflow vulnerability is present in OpenPrinting ippusbxd 1.34. A specially configured printer that supports IPP-over-USB can cause a buffer overflow which can lead to a arbitrar...
How severe is CVE-2024-45062?
CVE-2024-45062 has been rated MEDIUM with a CVSS base score of 6.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-45062?
Check the references section above for vendor advisories and patch information. Affected products include: Openprinting Ippusbxd Firmware, Openprinting Ippusbxd.