CVE-2010-1748
- EPSS 13.4%
- Published 17.06.2010 16:30:01
- Last modified 11.04.2025 00:51:21
The cgi_initialize_string function in cgi-bin/var.c in the web interface in CUPS before 1.4.4, as used on Apple Mac OS X 10.5.8, Mac OS X 10.6 before 10.6.4, and other platforms, does not properly handle parameter values containing a % (percent) char...
CVE-2010-0393
- EPSS 0.08%
- Published 05.03.2010 19:30:00
- Last modified 11.04.2025 00:51:21
The _cupsGetlang function, as used by lppasswd.c in lppasswd in CUPS 1.2.2, 1.3.7, 1.3.9, and 1.4.1, relies on an environment variable to determine the file that provides localized message strings, which allows local users to gain privileges via a fi...
CVE-2010-0302
- EPSS 5.29%
- Published 05.03.2010 19:30:00
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS before 1.4.4, when kqueue or epoll is used, allows remote attackers to cause a denia...
CVE-2009-3553
- EPSS 9.85%
- Published 20.11.2009 02:30:00
- Last modified 09.04.2025 00:30:58
Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS 1.3.7 and 1.3.10 allows remote attackers to cause a denial of service (daemon crash ...
- EPSS 1.28%
- Published 09.06.2009 17:30:10
- Last modified 09.04.2025 00:30:58
The directory-services functionality in the scheduler in CUPS 1.1.17 and 1.1.22 allows remote attackers to cause a denial of service (cupsd daemon outage or crash) via manipulations of the timing of CUPS browse packets, related to a "pointer use-afte...
CVE-2009-0949
- EPSS 15.38%
- Published 09.06.2009 17:30:00
- Last modified 09.04.2025 00:30:58
The ippReadIO function in cups/ipp.c in cupsd in CUPS before 1.3.10 does not properly initialize memory for IPP request packets, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a scheduler re...
CVE-2009-0791
- EPSS 2.96%
- Published 09.06.2009 17:30:00
- Last modified 09.04.2025 00:30:58
Multiple integer overflows in Xpdf 2.x and 3.x and Poppler 0.x, as used in the pdftops filter in CUPS 1.1.17, 1.1.22, and 1.3.7, GPdf, and kdegraphics KPDF, allow remote attackers to cause a denial of service (application crash) or possibly execute a...
CVE-2009-0164
- EPSS 4.05%
- Published 24.04.2009 15:30:00
- Last modified 09.04.2025 00:30:58
The web interface for CUPS before 1.3.10 does not validate the HTTP Host header in a client request, which makes it easier for remote attackers to conduct DNS rebinding attacks.
CVE-2009-1183
- EPSS 1.19%
- Published 23.04.2009 17:30:01
- Last modified 09.04.2025 00:30:58
The JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to cause a denial of service (infinite loop and hang) via a crafted PDF file.
CVE-2009-1182
- EPSS 5.02%
- Published 23.04.2009 17:30:01
- Last modified 09.04.2025 00:30:58
Multiple buffer overflows in the JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allow remote attackers to execute arbitrary code via a crafted PDF file.