Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-2941

Опубликовано: 28 окт. 2010
Источник: redhat
CVSS2: 3.3
EPSS Средний

Описание

ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly execute arbitrary code via a crafted IPP request.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 3cupsNot affected
Red Hat Enterprise Linux 4cupsNot affected
Red Hat Enterprise Linux 5cupsFixedRHSA-2010:081129.10.2010
Red Hat Enterprise Linux 6cupsFixedRHSA-2010:086610.11.2010

Показывать по

Дополнительная информация

Статус:

Important
https://bugzilla.redhat.com/show_bug.cgi?id=624438cups: cupsd memory corruption vulnerability

EPSS

Процентиль: 96%
0.27685
Средний

3.3 Low

CVSS2

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 14 лет назад

ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly execute arbitrary code via a crafted IPP request.

CVSS3: 9.8
nvd
больше 14 лет назад

ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly execute arbitrary code via a crafted IPP request.

CVSS3: 9.8
debian
больше 14 лет назад

ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate me ...

CVSS3: 9.8
github
около 3 лет назад

ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly execute arbitrary code via a crafted IPP request.

oracle-oval
больше 14 лет назад

ELSA-2010-0866: cups security update (IMPORTANT)

EPSS

Процентиль: 96%
0.27685
Средний

3.3 Low

CVSS2