Files
CVEs-PoC/2020/CVE-2020-12867.md
T
2024-05-25 21:48:12 +02:00

19 lines
834 B
Markdown

### [CVE-2020-12867](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-12867)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
A NULL pointer dereference in sanei_epson_net_read in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to cause a denial of service, aka GHSL-2020-075.
### POC
#### Reference
- https://gitlab.com/sane-project/backends/-/issues/279#issue-1-ghsl-2020-075-null-pointer-dereference-in-sanei_epson_net_read
- https://securitylab.github.com/advisories/GHSL-2020-075-libsane
#### Github
- https://github.com/Live-Hack-CVE/CVE-2020-12867