Show filters
29 Total Results
Displaying 21-29 of 29
Sort by:
Attacker Value
Unknown
CVE-2008-5286
Disclosure Date: December 01, 2008 (last updated October 04, 2023)
Integer overflow in the _cupsImageReadPNG function in CUPS 1.1.17 through 1.3.9 allows remote attackers to execute arbitrary code via a PNG image with a large height value, which bypasses a validation check and triggers a buffer overflow.
0
Attacker Value
Unknown
CVE-2008-5184
Disclosure Date: November 21, 2008 (last updated October 04, 2023)
The web interface (cgi-bin/admin.c) in CUPS before 1.3.8 uses the guest username when a user is not logged on to the web server, which makes it easier for remote attackers to bypass intended policy and conduct CSRF attacks via the (1) add and (2) cancel RSS subscription functions.
0
Attacker Value
Unknown
CVE-2008-3640
Disclosure Date: October 14, 2008 (last updated October 04, 2023)
Integer overflow in the WriteProlog function in texttops in CUPS before 1.3.9 allows remote attackers to execute arbitrary code via a crafted PostScript file that triggers a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2008-3639
Disclosure Date: October 14, 2008 (last updated October 04, 2023)
Heap-based buffer overflow in the read_rle16 function in imagetops in CUPS before 1.3.9 allows remote attackers to execute arbitrary code via an SGI image with malformed Run Length Encoded (RLE) data containing a small image and a large row count.
0
Attacker Value
Unknown
CVE-2008-3641
Disclosure Date: October 10, 2008 (last updated October 04, 2023)
The Hewlett-Packard Graphics Language (HPGL) filter in CUPS before 1.3.9 allows remote attackers to execute arbitrary code via crafted pen width and pen color opcodes that overwrite arbitrary memory.
0
Attacker Value
Unknown
CVE-2008-0053
Disclosure Date: March 18, 2008 (last updated October 04, 2023)
Multiple buffer overflows in the HP-GL/2-to-PostScript filter in CUPS before 1.3.6 might allow remote attackers to execute arbitrary code via a crafted HP-GL/2 file.
0
Attacker Value
Unknown
CVE-2007-5849
Disclosure Date: December 19, 2007 (last updated October 04, 2023)
Integer underflow in the asn1_get_string function in the SNMP back end (backend/snmp.c) for CUPS 1.2 through 1.3.4 allows remote attackers to execute arbitrary code via a crafted SNMP response that triggers a stack-based buffer overflow.
0
Attacker Value
Unknown
CVE-2005-2525
Disclosure Date: August 19, 2005 (last updated February 22, 2025)
CUPS in Mac OS X 10.3.9 and 10.4.2 does not properly close file descriptors when handling multiple simultaneous print jobs, which allows remote attackers to cause a denial of service (printing halt).
0
Attacker Value
Unknown
CVE-2005-2526
Disclosure Date: August 19, 2005 (last updated February 22, 2025)
CUPS in Mac OS X 10.3.9 and 10.4.2 allows remote attackers to cause a denial of service (CPU consumption) by sending a partial IPP request and closing the connection.
0