Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2008-1029

Опубликовано: 15 дек. 2008
Источник: oracle-oval
Платформа: Oracle Linux 5

Описание

ELSA-2008-1029: cups security update (MODERATE)

[1.2.4-11.18:.3]

  • Applied patch to fix RSS subscription limiting (bug #473901, CVE-2008-5183).

Обновленные пакеты

Oracle Linux 5

Oracle Linux x86_64

cups

1.2.4-11.18.el5_2.3

cups-devel

1.2.4-11.18.el5_2.3

cups-libs

1.2.4-11.18.el5_2.3

cups-lpd

1.2.4-11.18.el5_2.3

Oracle Linux i386

cups

1.2.4-11.18.el5_2.3

cups-devel

1.2.4-11.18.el5_2.3

cups-libs

1.2.4-11.18.el5_2.3

cups-lpd

1.2.4-11.18.el5_2.3

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 16 лет назад

cupsd in CUPS 1.3.9 and earlier allows local users, and possibly remote attackers, to cause a denial of service (daemon crash) by adding a large number of RSS Subscriptions, which triggers a NULL pointer dereference. NOTE: this issue can be triggered remotely by leveraging CVE-2008-5184.

redhat
больше 16 лет назад

cupsd in CUPS 1.3.9 and earlier allows local users, and possibly remote attackers, to cause a denial of service (daemon crash) by adding a large number of RSS Subscriptions, which triggers a NULL pointer dereference. NOTE: this issue can be triggered remotely by leveraging CVE-2008-5184.

CVSS3: 7.5
nvd
больше 16 лет назад

cupsd in CUPS 1.3.9 and earlier allows local users, and possibly remote attackers, to cause a denial of service (daemon crash) by adding a large number of RSS Subscriptions, which triggers a NULL pointer dereference. NOTE: this issue can be triggered remotely by leveraging CVE-2008-5184.

CVSS3: 7.5
debian
больше 16 лет назад

cupsd in CUPS 1.3.9 and earlier allows local users, and possibly remot ...

CVSS3: 7.5
github
около 3 лет назад

cupsd in CUPS 1.3.9 and earlier allows local users, and possibly remote attackers, to cause a denial of service (daemon crash) by adding a large number of RSS Subscriptions, which triggers a NULL pointer dereference. NOTE: this issue can be triggered remotely by leveraging CVE-2008-5184.