{"id":"CVE-2015-8560","details":"Incomplete blacklist vulnerability in util.c in foomatic-rip in cups-filters 1.0.42 before 1.4.0 and in foomatic-filters in Foomatic 4.0.x allows remote attackers to execute arbitrary commands via a ; (semicolon) character in a print job, a different vulnerability than CVE-2015-8327.","modified":"2026-04-16T06:17:37.317272424Z","published":"2016-04-14T14:59:06Z","related":["SUSE-SU-2016:0112-1","openSUSE-SU-2024:10313-1"],"references":[{"type":"ADVISORY","url":"http://bzr.linuxfoundation.org/loggerhead/openprinting/cups-filters/annotate/head:/NEWS"},{"type":"ADVISORY","url":"http://rhn.redhat.com/errata/RHSA-2016-0491.html"},{"type":"ADVISORY","url":"http://www.debian.org/security/2015/dsa-3419"},{"type":"ADVISORY","url":"http://www.debian.org/security/2015/dsa-3429"},{"type":"ADVISORY","url":"http://www.ubuntu.com/usn/USN-2838-1"},{"type":"ADVISORY","url":"http://www.ubuntu.com/usn/USN-2838-2"},{"type":"WEB","url":"http://bzr.linuxfoundation.org/loggerhead/openprinting/cups-filters/revision/7419"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2015/12/13/2"},{"type":"WEB","url":"http://www.openwall.com/lists/oss-security/2015/12/14/13"},{"type":"WEB","url":"http://www.oracle.com/technetwork/topics/security/linuxbulletinapr2016-2952096.html"}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L"}]}