CVE-2014-2856
- EPSS 1.04%
- Veröffentlicht 18.04.2014 14:55:26
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in scheduler/client.c in Common Unix Printing System (CUPS) before 1.7.2 allows remote attackers to inject arbitrary web script or HTML via the URL path, related to the is_path_absolute function.
CVE-2013-6891
- EPSS 0.05%
- Veröffentlicht 26.01.2014 01:55:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
lppasswd in CUPS before 1.7.1, when running with setuid privileges, allows local users to read portions of arbitrary files via a modified HOME environment variable and a symlink attack involving .cups/client.conf.
CVE-2012-5519
- EPSS 13.82%
- Veröffentlicht 20.11.2012 00:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using certain permissions, which allows local users in the lpadmin group to read or write arbitrary ...
CVE-2011-3170
- EPSS 7.69%
- Veröffentlicht 19.08.2011 17:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The gif_read_lzw function in filter/image-gif.c in CUPS 1.4.8 and earlier does not properly handle the first code word in an LZW stream, which allows remote attackers to trigger a heap-based buffer overflow, and possibly execute arbitrary code, via a...
CVE-2011-2896
- EPSS 5.27%
- Veröffentlicht 19.08.2011 17:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The LZW decompressor in the LWZReadByte function in giftoppm.c in the David Koblas GIF decoder in PBMPLUS, as used in the gif_read_lzw function in filter/image-gif.c in CUPS before 1.4.7, the LZWReadByte function in plug-ins/common/file-gif-load.c in...
CVE-2010-3702
- EPSS 3.86%
- Veröffentlicht 05.11.2010 18:00:05
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent attackers to cause a denial of service (crash) via unkn...
CVE-2010-2941
- EPSS 27.69%
- Veröffentlicht 05.11.2010 17:00:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly execute arbi...
- EPSS 0.83%
- Veröffentlicht 22.06.2010 20:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The cupsDoAuthentication function in auth.c in the client in CUPS before 1.4.4, when HAVE_GSSAPI is omitted, does not properly handle a demand for authorization, which allows remote CUPS servers to cause a denial of service (infinite loop) via HTTP_U...
CVE-2010-2431
- EPSS 0.03%
- Veröffentlicht 22.06.2010 20:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file.
CVE-2010-0542
- EPSS 4.41%
- Veröffentlicht 21.06.2010 16:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The _WriteProlog function in texttops.c in texttops in the Text Filter subsystem in CUPS before 1.4.4 does not check the return values of certain calloc calls, which allows remote attackers to cause a denial of service (NULL pointer dereference or he...