CUPS 1.3.5

CPE Details

CUPS 1.3.5
1.3.5
2020-10-27
20h23 +00:00
2020-10-27
20h23 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:cups:cups:1.3.5:*:*:*:*:*:*:*

Informations

Vendor

cups

Product

cups

Version

1.3.5

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2014-8166 2018-01-12 16h00 +00:00 The browsing feature in the server in CUPS does not filter ANSI escape sequences from shared printer names, which might allow remote attackers to execute arbitrary code via a crafted printer name.
8.8
Haute
CVE-2015-1158 2015-06-26 08h00 +00:00 The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.
10
CVE-2015-1159 2015-06-26 08h00 +00:00 Cross-site scripting (XSS) vulnerability in the cgi_puts function in cgi-bin/template.c in the template engine in CUPS before 2.0.3 allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter to help/.
4.3
CVE-2008-0047 2008-03-18 22h00 +00:00 Heap-based buffer overflow in the cgiCompileSearch function in CUPS 1.3.5, and other versions including the version bundled with Apple Mac OS X 10.5.2, when printer sharing is enabled, allows remote attackers to execute arbitrary code via crafted search expressions.
9.3
CVE-2008-0882 2008-02-21 18h00 +00:00 Double free vulnerability in the process_browse_data function in CUPS 1.3.5 allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via crafted UDP Browse packets to the cupsd port (631/udp), related to an unspecified manipulation of a remote printer. NOTE: some of these details are obtained from third party information.
10