Skip to main content

Vendor/product archive

easy_software_products / cups CVEs

Beta · best-effort

35 CVEs tagged to easy_software_products / cups10 Critical, 6 High, 15 Medium, 4 Low, 0 Unrated.

CVE-2008-1373

Published Apr 4, 2008

Buffer overflow in the gif_read_lzw function in CUPS 1.3.6 allows remote attackers to have an unknown impact via a GIF file with a large code_size value, a similar issue to CVE-20…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5849

Published Dec 19, 2007

Integer underflow in the asn1_get_string function in the SNMP back end (backend/snmp.c) for CUPS 1.2 through 1.3.4 allows remote attackers to execute arbitrary code via a crafted…

CVSS 9.3 · Critical
Vendor/product tagsBeta · best-effort

CVE-2005-2874

Published Sep 13, 2005

The is_path_absolute function in scheduler/client.c for the daemon in CUPS before 1.1.23 allows remote attackers to cause a denial of service (CPU consumption by tight loop) via a…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-2525

Published Aug 19, 2005

CUPS in Mac OS X 10.3.9 and 10.4.2 does not properly close file descriptors when handling multiple simultaneous print jobs, which allows remote attackers to cause a denial of serv…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2005-2526

Published Aug 19, 2005

CUPS in Mac OS X 10.3.9 and 10.4.2 allows remote attackers to cause a denial of service (CPU consumption) by sending a partial IPP request and closing the connection.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-0888

Published Jan 27, 2005

Multiple integer overflows in xpdf 2.0 and 3.0, and other packages that use xpdf code such as CUPS, gpdf, and kdegraphics, allow remote attackers to cause a denial of service (cra…

CVSS 10.0 · Critical

CVE-2004-0889

Published Jan 27, 2005

Multiple integer overflows in xpdf 3.0, and other packages that use xpdf code such as CUPS, allow remote attackers to cause a denial of service (crash) and possibly execute arbitr…

CVSS 10.0 · Critical

CVE-2004-1125

Published Jan 10, 2005

Buffer overflow in the Gfx::doImage function in Gfx.cc for xpdf 3.00, and other products that share code such as tetex-bin and kpdf in KDE 3.2.x to 3.2.3 and 3.3.x to 3.3.2, allow…

CVSS 9.3 · Critical
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2004-1267

Published Jan 10, 2005

Buffer overflow in the ParseCommand function in hpgl-input.c in the hpgltops program for CUPS 1.1.22 allows remote attackers to execute arbitrary code via a crafted HPGL file.

CVSS 6.5 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2004-1268

Published Jan 10, 2005

lppasswd in CUPS 1.1.22 ignores write errors when modifying the CUPS passwd file, which allows local users to corrupt the file by filling the associated file system and triggering…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-1269

Published Jan 10, 2005

lppasswd in CUPS 1.1.22 does not remove the passwd.new file if it encounters a file-size resource limit while writing to passwd.new, which causes subsequent invocations of lppassw…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2004-1270

Published Jan 10, 2005

lppasswd in CUPS 1.1.22, when run in environments that do not ensure that file descriptors 0, 1, and 2 are open when lppasswd is called, does not verify that the passwd.new file i…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2004-0558

Published Sep 28, 2004

The Internet Printing Protocol (IPP) implementation in CUPS before 1.1.21 allows remote attackers to cause a denial of service (service hang) via a certain UDP packet to the IPP p…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2003-0788

Published Dec 1, 2003

Unknown vulnerability in the Internet Printing Protocol (IPP) implementation in CUPS before 1.1.19 allows remote attackers to cause a denial of service (CPU consumption from a "bu…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2002-1384

Published Jan 2, 2003

Integer overflow in pdftops, as used in Xpdf 2.01 and earlier, xpdf-i, and CUPS before 1.1.18, allows local users to execute arbitrary code via a ColorSpace entry with a large num…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 35 CVEsPage 1 of 2