CVE-2018-18959: Buffer Overflow
An issue was discovered on Epson WorkForce WF-2861 10.48 LQ22I3, 10.51.LQ20I6 and 10.52.LQ17IA devices. On the 'Air Print Setting' web page, if the data for 'Bonjour Service Location' at /PRESENTATION/BONJOUR is more than 251 bytes when sending data for Air Print Setting, then the device no longer functions until a reboot.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-18959?
CVE-2018-18959 is a vulnerability found on Epson WorkForce WF-2861 devices that allows an attacker to cause a denial of service (device freeze) by sending a large amount of data to the 'Air Print Setting' web page.
How severe is CVE-2018-18959?
CVE-2018-18959 has a severity rating of 7.5 out of 10, which is considered high.
Which software versions are affected by CVE-2018-18959?
The affected software versions are Epson WorkForce WF-2861 firmware 10.48 LQ22I3, 10.51.LQ20I6, and 10.52.LQ17IA.
How can I fix CVE-2018-18959?
There is currently no known fix for CVE-2018-18959. It is recommended to apply any security patches or updates provided by Epson when they become available.
Where can I find more information about CVE-2018-18959?
You can find more information about CVE-2018-18959 on the GitHub page at: https://github.com/epistemophilia/CVEs/blob/master/Epson-WorkForce-WF2861/CVE-2018-18959/poc-cve-2018-18959.py