9.8

CVE-2019-10627

Integer overflow to buffer overflow vulnerability in PostScript image handling code used by the PostScript- and PDF-compatible interpreters due to incorrect buffer size calculation. in PostScript and PDF printers that use IPS versions prior to 2019.2 in PostScript and PDF printers that use IPS versions prior to 2019.2

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
QualcommIps Version < 2019.2
HpD9l63a Firmware Version < 001.1937c
   HpD9l63a Version-
HpD9l64a Firmware Version < 001.1937c
   HpD9l64a Version-
HpT0g70a Firmware Version < 001.1937c
   HpT0g70a Version-
HpJ3p65a Firmware Version < 001.1937c
   HpJ3p65a Version-
HpJ3p68a Firmware Version < 001.1937c
   HpJ3p68a Version-
HpJ6u57a Firmware Version < 001.1937d
   HpJ6u57a Version-
HpJ6u57b Firmware Version < 001.1937d
   HpJ6u57b Version-
HpJ9v80a Firmware Version < 001.1937d
   HpJ9v80a Version-
HpJ9v80b Firmware Version < 001.1937d
   HpJ9v80b Version-
HpJ6u55a Firmware Version < 001.1937d
   HpJ6u55a Version-
HpJ6u55d Firmware Version < 001.1937d
   HpJ6u55d Version-
HpJ6u51b Firmware Version < 001.1937d
   HpJ6u51b Version-
HpJ9v82a Firmware Version < 001.1937d
   HpJ9v82a Version-
HpJ9v82d Firmware Version < 001.1937d
   HpJ9v82d Version-
HpJ9v78b Firmware Version < 001.1937d
   HpJ9v78b Version-
HpD3q15a Firmware Version < 001.1937d
   HpD3q15a Version-
HpD3q15b Firmware Version < 001.1937d
   HpD3q15b Version-
HpD3q15d Firmware Version < 001.1937d
   HpD3q15d Version-
HpD3q16a Firmware Version < 001.1937d
   HpD3q16a Version-
HpD3q16d Firmware Version < 001.1937d
   HpD3q16d Version-
HpW2z52b Firmware Version < 001.1937d
   HpW2z52b Version-
HpD3q19a Firmware Version < 001.1937d
   HpD3q19a Version-
HpD3q19b Firmware Version < 001.1937d
   HpD3q19b Version-
HpD3q19d Firmware Version < 001.1937d
   HpD3q19d Version-
HpD3q20a Firmware Version < 001.1937d
   HpD3q20a Version-
HpD3q20b Firmware Version < 001.1937d
   HpD3q20b Version-
HpD3q20c Firmware Version < 001.1937d
   HpD3q20c Version-
HpD3q20d Firmware Version < 001.1937d
   HpD3q20d Version-
HpW2z53b Firmware Version < 001.1937d
   HpW2z53b Version-
Hp2dr21d Firmware Version < 001.1937d
   Hp2dr21d Version-
HpD3q17a Firmware Version < 001.1937d
   HpD3q17a Version-
HpD3q17d Firmware Version < 001.1937d
   HpD3q17d Version-
HpK9z74a Firmware Version < 001.1937d
   HpK9z74a Version-
HpK9z74d Firmware Version < 001.1937d
   HpK9z74d Version-
HpD3q21a Firmware Version < 001.1937d
   HpD3q21a Version-
HpD3q21b Firmware Version < 001.1937d
   HpD3q21b Version-
HpD3q21c Firmware Version < 001.1937d
   HpD3q21c Version-
HpD3q21d Firmware Version < 001.1937d
   HpD3q21d Version-
HpK9z76a Firmware Version < 001.1937d
   HpK9z76a Version-
HpK9z76b Firmware Version < 001.1937d
   HpK9z76b Version-
HpK9z76d Firmware Version < 001.1937d
   HpK9z76d Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.63% 0.694
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

CWE-131 Incorrect Calculation of Buffer Size

The product does not correctly calculate the size to be used when allocating a buffer, which could lead to a buffer overflow.

CWE-190 Integer Overflow or Wraparound

The product performs a calculation that can produce an integer overflow or wraparound when the logic assumes that the resulting value will always be larger than the original value. This occurs when an integer value is incremented to a value that is too large to store in the associated representation. When this occurs, the value may become a very small or negative number.