Search CVE reports


Toggle filters

121 – 130 of 156 results


CVE-2008-1373

Low priority
Fixed

Buffer overflow in the gif_read_lzw function in CUPS 1.3.6 allows remote attackers to have an unknown impact via a GIF file with a large code_size value, a similar issue to CVE-2006-4484.

1 affected package

cupsys

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys — — — — —
Show less packages

CVE-2008-0053

Low priority
Fixed

Multiple buffer overflows in the HP-GL/2-to-PostScript filter in CUPS before 1.3.6 might allow remote attackers to execute arbitrary code via a crafted HP-GL/2 file.

1 affected package

cupsys

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys — — — — —
Show less packages

CVE-2008-0047

Medium priority
Fixed

Heap-based buffer overflow in the cgiCompileSearch function in CUPS 1.3.5, and other versions including the version bundled with Apple Mac OS X 10.5.2, when printer sharing is enabled, allows remote attackers to execute arbitrary...

1 affected package

cupsys

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys — — — — —
Show less packages

CVE-2008-0597

Low priority
Not affected

Use-after-free vulnerability in CUPS before 1.1.22, and possibly other versions, allows remote attackers to cause a denial of service (crash) via crafted IPP packets.

1 affected package

cupsys

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys — — — — —
Show less packages

CVE-2008-0596

Low priority
Not affected

Memory leak in CUPS before 1.1.22, and possibly other versions, allows remote attackers to cause a denial of service (memory consumption and daemon crash) via a large number of requests to add and remove shared printers.

1 affected package

cupsys

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys — — — — —
Show less packages

CVE-2008-0882

Medium priority
Fixed

Double free vulnerability in the process_browse_data function in CUPS 1.3.5 allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via crafted UDP Browse packets to the cupsd port...

1 affected package

cupsys

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys — — — — —
Show less packages

CVE-2007-5849

Medium priority
Fixed

Integer underflow in the asn1_get_string function in the SNMP back end (backend/snmp.c) for CUPS 1.2 through 1.3.4 allows remote attackers to execute arbitrary code via a crafted SNMP response that triggers a stack-based buffer overflow.

1 affected package

cupsys

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys — — — — —
Show less packages

CVE-2007-5848

Medium priority
Not affected

Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to execute arbitrary code via a crafted URI to the CUPS service.

1 affected package

cupsys

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys — — — — —
Show less packages

CVE-2007-6358

Low priority
Fixed

pdftops.pl before 1.20 in alternate pdftops filter allows local users to overwrite arbitrary files via a symlink attack on the pdfin.[PID].tmp temporary file, which is created when pdftops reads a PDF file from stdin, such as when...

1 affected package

cupsys

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys — — — — —
Show less packages

CVE-2007-5393

Medium priority

Some fixes available 25 of 36

Heap-based buffer overflow in the CCITTFaxStream::lookChar method in xpdf/Stream.cc in Xpdf 3.02p11 allows remote attackers to execute arbitrary code via a PDF file that contains a crafted CCITTFaxDecode filter.

13 affected packages

cups, cupsys, gpdf, ipe, kdegraphics...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cups — — — — —
cupsys — — — — —
gpdf — — — — —
ipe — — — — —
kdegraphics — — — — —
koffice — — — — —
libextractor — — — — —
pdfkit.framework — — — — —
pdftohtml — — — — —
poppler — — — — —
tetex-bin — — — — —
texlive-bin — — — — —
xpdf — — — — —
Show all 13 packages Show less packages