CVE-2018-17141

Name
CVE-2018-17141
Description
HylaFAX 6.0.6 and HylaFAX+ 5.6.0 allow remote attackers to execute arbitrary code via a dial-in session that provides a FAX page with the JPEG bit enabled, which is mishandled in FaxModem::writeECMData() in the faxd/CopyQuality.c++ file.
NVD Severity
high
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
Exploit https://www.x41-dsec.de/lab/advisories/x41-2018-008-hylafax/
Exploit https://seclists.org/bugtraq/2018/Sep/49
Exploit http://www.openwall.com/lists/oss-security/2018/09/20/1
Patch http://git.hylafax.org/HylaFAX?a=commit;h=c6cac8d8cd0dbe313689ba77023e12bc5b3027be
Third Party Advisory https://www.debian.org/security/2018/dsa-4298
Mailing List https://lists.debian.org/debian-lts-announce/2018/09/msg00026.html

Match rules

CPE URI Source package Min version Max version
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:* debian_linux == None == 9.0
cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:* debian_linux == None == 8.0

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
hylafax edge-main 6.0.6-r5 None fixed
hylafax 3.20-main 6.0.6-r5 None fixed
hylafax 3.19-main 6.0.6-r5 None fixed
hylafax 3.18-main 6.0.6-r5 None fixed
hylafax 3.17-main 6.0.6-r5 None fixed
hylafax 3.12-main 6.0.6-r5 None fixed
hylafax 3.11-main 6.0.6-r5 None fixed
hylafax 3.10-main 6.0.6-r5 None fixed