VulnerabilityModified
CVE-2006-1136
Buffer overflow in the PostScript file interpreter code for Xerox CopyCentre and Xerox WorkCentre Pro, running software 1.001.02.073 or earlier, or 1.001.02.074 before 1.001.02.715, allows attackers to cause a denial of service via unknown vectors.
MEDIUM 5.0EPSS 2.70%
Does this matter?
Lower severity and a low EPSS score (2.70%). Track it; it rarely justifies an emergency change on its own.
Description
Buffer overflow in the PostScript file interpreter code for Xerox CopyCentre and Xerox WorkCentre Pro, running software 1.001.02.073 or earlier, or 1.001.02.074 before 1.001.02.715, allows attackers to cause a denial of service via unknown vectors.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 2.70% probability · 85th percentile
- CISA KEV
- Not listed
- Affected
- xerox/copycentre c65 · xerox/copycentre c75 · xerox/copycentre c90 · xerox/workcentre 65 · xerox/workcentre 75 · xerox/workcentre 90
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/19146Third Party Advisory
- http://securitytracker.com/id?1015738Third Party Advisory, VDB Entry
- http://www.osvdb.org/23724Broken Link
- http://www.securityfocus.com/bid/17014Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2006/0857Permissions Required, Third Party Advisory
- http://www.xerox.com/downloads/usa/en/c/cert_XRX06_002.pdfBroken Link, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25172Third Party Advisory, VDB Entry
- http://secunia.com/advisories/19146Third Party Advisory
- http://securitytracker.com/id?1015738Third Party Advisory, VDB Entry
- http://www.osvdb.org/23724Broken Link
- http://www.securityfocus.com/bid/17014Third Party Advisory, VDB Entry
- http://www.vupen.com/english/advisories/2006/0857Permissions Required, Third Party Advisory
- http://www.xerox.com/downloads/usa/en/c/cert_XRX06_002.pdfBroken Link, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25172Third Party Advisory, VDB Entry
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.