Search CVE reports


Toggle filters

111 – 120 of 149 results


CVE-2008-3641

High priority
Fixed

The Hewlett-Packard Graphics Language (HPGL) filter in CUPS before 1.3.9 allows remote attackers to execute arbitrary code via crafted pen width and pen color opcodes that overwrite arbitrary memory.

2 affected packages

cups, cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cups
cupsys
Show less packages

CVE-2008-1722

Medium priority

Some fixes available 4 of 5

Multiple integer overflows in (1) filter/image-png.c and (2) filter/image-zoom.c in CUPS 1.3 allow attackers to cause a denial of service (crash) and trigger memory corruption, as demonstrated via a crafted PNG image.

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages

CVE-2008-1374

Medium priority
Not affected

Integer overflow in pdftops filter in CUPS in Red Hat Enterprise Linux 3 and 4, when running on 64-bit platforms, allows remote attackers to execute arbitrary code via a crafted PDF file. NOTE: this issue is due to an incomplete...

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages

CVE-2008-1373

Low priority
Fixed

Buffer overflow in the gif_read_lzw function in CUPS 1.3.6 allows remote attackers to have an unknown impact via a GIF file with a large code_size value, a similar issue to CVE-2006-4484.

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages

CVE-2008-0053

Low priority
Fixed

Multiple buffer overflows in the HP-GL/2-to-PostScript filter in CUPS before 1.3.6 might allow remote attackers to execute arbitrary code via a crafted HP-GL/2 file.

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages

CVE-2008-0047

Medium priority
Fixed

Heap-based buffer overflow in the cgiCompileSearch function in CUPS 1.3.5, and other versions including the version bundled with Apple Mac OS X 10.5.2, when printer sharing is enabled, allows remote attackers to execute arbitrary...

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages

CVE-2008-0597

Low priority
Not affected

Use-after-free vulnerability in CUPS before 1.1.22, and possibly other versions, allows remote attackers to cause a denial of service (crash) via crafted IPP packets.

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages

CVE-2008-0596

Low priority
Not affected

Memory leak in CUPS before 1.1.22, and possibly other versions, allows remote attackers to cause a denial of service (memory consumption and daemon crash) via a large number of requests to add and remove shared printers.

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages

CVE-2008-0882

Medium priority
Fixed

Double free vulnerability in the process_browse_data function in CUPS 1.3.5 allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via crafted UDP Browse packets to the cupsd port...

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages

CVE-2007-5849

Medium priority
Fixed

Integer underflow in the asn1_get_string function in the SNMP back end (backend/snmp.c) for CUPS 1.2 through 1.3.4 allows remote attackers to execute arbitrary code via a crafted SNMP response that triggers a stack-based buffer overflow.

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages