Your submission was sent successfully! Close

Thank you for contacting us. A member of our team will be in touch shortly. Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

1 – 10 of 10 results


CVE-2023-46052

Negligible priority
Ignored

** DISPUTED ** Sane 1.2.1 heap bounds overwrite in init_options() from backend/test.c via a long init_mode string in a configuration file. NOTE: this is disputed because there is no expectation that test.c code should be executed...

1 affected packages

sane-backends

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sane-backends Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2023-46047

Negligible priority
Ignored

** DISPUTED ** An issue in Sane 1.2.1 allows a local attacker to execute arbitrary code via a crafted file to the sanei_configure_attach() function. NOTE: this is disputed because there is no expectation that the product should be...

1 affected packages

sane-backends

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sane-backends Not affected Not affected Not affected Not affected Not affected
Show less packages

CVE-2020-12866

Medium priority

Some fixes available 2 of 3

A NULL pointer dereference in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to cause a denial of service, GHSL-2020-079.

1 affected packages

sane-backends

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sane-backends Fixed Fixed Not affected
Show less packages

CVE-2020-12865

Medium priority

Some fixes available 3 of 4

A heap buffer overflow in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to execute arbitrary code, aka GHSL-2020-084.

1 affected packages

sane-backends

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sane-backends Fixed Fixed Fixed
Show less packages

CVE-2020-12864

Low priority

Some fixes available 2 of 3

An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read important information, such as the ASLR offsets of the program, aka GHSL-2020-081.

1 affected packages

sane-backends

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sane-backends Fixed Fixed Not affected
Show less packages

CVE-2020-12863

Low priority

Some fixes available 3 of 4

An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read important information, such as the ASLR offsets of the program, aka GHSL-2020-083.

1 affected packages

sane-backends

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sane-backends Fixed Fixed Fixed
Show less packages

CVE-2020-12862

Low priority

Some fixes available 3 of 4

An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read important information, such as the ASLR offsets of the program, aka GHSL-2020-082.

1 affected packages

sane-backends

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sane-backends Fixed Fixed Fixed
Show less packages

CVE-2020-12861

Medium priority

Some fixes available 2 of 3

A heap buffer overflow in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to execute arbitrary code, aka GHSL-2020-080.

1 affected packages

sane-backends

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sane-backends Fixed Fixed Not affected
Show less packages

CVE-2020-12867

Medium priority

Some fixes available 3 of 4

A NULL pointer dereference in sanei_epson_net_read in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to cause a denial of service, aka GHSL-2020-075.

1 affected packages

sane-backends

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sane-backends Fixed Fixed Fixed
Show less packages

CVE-2017-6318

Low priority

Some fixes available 1 of 5

saned in sane-backends 1.0.25 allows remote attackers to obtain sensitive memory information via a crafted SANE_NET_CONTROL_OPTION packet.

1 affected packages

sane-backends

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
sane-backends Not affected Not affected Fixed
Show less packages