CVE-2015-6520
Severity CVSS v4.0:
Pending analysis
Type:
CWE-264
Permissions, Privileges, and Access Control
Publication date:
01/09/2015
Last modified:
12/04/2025
Description
IPPUSBXD before 1.22 listens on all interfaces, which allows remote attackers to obtain access to USB connected printers via a direct request.
Impact
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:ippusbxd_project:ippusbxd:*:*:*:*:*:*:*:* | 1.21.2 (including) |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://www.openwall.com/lists/oss-security/2015/08/11/1
- http://www.openwall.com/lists/oss-security/2015/08/18/11
- http://www.ubuntu.com/usn/USN-2725-1
- https://bugs.launchpad.net/ubuntu/+source/ippusbxd/+bug/1455644
- https://github.com/tillkamppeter/ippusbxd/commit/46844402bca7a38fc224483ba6f0a93c4613203f
- http://www.openwall.com/lists/oss-security/2015/08/11/1
- http://www.openwall.com/lists/oss-security/2015/08/18/11
- http://www.ubuntu.com/usn/USN-2725-1
- https://bugs.launchpad.net/ubuntu/+source/ippusbxd/+bug/1455644
- https://github.com/tillkamppeter/ippusbxd/commit/46844402bca7a38fc224483ba6f0a93c4613203f



