Show filters
29 Total Results
Displaying 21-29 of 29
Sort by:
Attacker Value
Unknown

CVE-2008-5286

Disclosure Date: December 01, 2008 (last updated October 04, 2023)
Integer overflow in the _cupsImageReadPNG function in CUPS 1.1.17 through 1.3.9 allows remote attackers to execute arbitrary code via a PNG image with a large height value, which bypasses a validation check and triggers a buffer overflow.
0
Attacker Value
Unknown

CVE-2008-5184

Disclosure Date: November 21, 2008 (last updated October 04, 2023)
The web interface (cgi-bin/admin.c) in CUPS before 1.3.8 uses the guest username when a user is not logged on to the web server, which makes it easier for remote attackers to bypass intended policy and conduct CSRF attacks via the (1) add and (2) cancel RSS subscription functions.
0
Attacker Value
Unknown

CVE-2008-3640

Disclosure Date: October 14, 2008 (last updated October 04, 2023)
Integer overflow in the WriteProlog function in texttops in CUPS before 1.3.9 allows remote attackers to execute arbitrary code via a crafted PostScript file that triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2008-3639

Disclosure Date: October 14, 2008 (last updated October 04, 2023)
Heap-based buffer overflow in the read_rle16 function in imagetops in CUPS before 1.3.9 allows remote attackers to execute arbitrary code via an SGI image with malformed Run Length Encoded (RLE) data containing a small image and a large row count.
0
Attacker Value
Unknown

CVE-2008-3641

Disclosure Date: October 10, 2008 (last updated October 04, 2023)
The Hewlett-Packard Graphics Language (HPGL) filter in CUPS before 1.3.9 allows remote attackers to execute arbitrary code via crafted pen width and pen color opcodes that overwrite arbitrary memory.
0
Attacker Value
Unknown

CVE-2008-0053

Disclosure Date: March 18, 2008 (last updated October 04, 2023)
Multiple buffer overflows in the HP-GL/2-to-PostScript filter in CUPS before 1.3.6 might allow remote attackers to execute arbitrary code via a crafted HP-GL/2 file.
0
Attacker Value
Unknown

CVE-2007-5849

Disclosure Date: December 19, 2007 (last updated October 04, 2023)
Integer underflow in the asn1_get_string function in the SNMP back end (backend/snmp.c) for CUPS 1.2 through 1.3.4 allows remote attackers to execute arbitrary code via a crafted SNMP response that triggers a stack-based buffer overflow.
0
Attacker Value
Unknown

CVE-2005-2525

Disclosure Date: August 19, 2005 (last updated February 22, 2025)
CUPS in Mac OS X 10.3.9 and 10.4.2 does not properly close file descriptors when handling multiple simultaneous print jobs, which allows remote attackers to cause a denial of service (printing halt).
0
Attacker Value
Unknown

CVE-2005-2526

Disclosure Date: August 19, 2005 (last updated February 22, 2025)
CUPS in Mac OS X 10.3.9 and 10.4.2 allows remote attackers to cause a denial of service (CPU consumption) by sending a partial IPP request and closing the connection.
0