Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-0163

Опубликовано: 23 апр. 2009
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8

Описание

Integer overflow in the TIFF image decoding routines in CUPS 1.3.9 and earlier allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a crafted TIFF image, which is not properly handled by the (1) _cupsImageReadTIFF function in the imagetops filter and (2) imagetoraster filter, leading to a heap-based buffer overflow.

РелизСтатусПримечание
dapper

DNE

devel

released

1.3.9-17ubuntu1
gutsy

DNE

hardy

DNE

intrepid

released

1.3.9-2ubuntu9.1
upstream

needs-triage

Показывать по

РелизСтатусПримечание
dapper

released

1.2.2-0ubuntu0.6.06.13
devel

DNE

gutsy

released

1.3.2-1ubuntu7.10
hardy

released

1.3.7-1ubuntu3.4
intrepid

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 90%
0.05696
Низкий

6.8 Medium

CVSS2

Связанные уязвимости

redhat
около 16 лет назад

Integer overflow in the TIFF image decoding routines in CUPS 1.3.9 and earlier allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a crafted TIFF image, which is not properly handled by the (1) _cupsImageReadTIFF function in the imagetops filter and (2) imagetoraster filter, leading to a heap-based buffer overflow.

nvd
около 16 лет назад

Integer overflow in the TIFF image decoding routines in CUPS 1.3.9 and earlier allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a crafted TIFF image, which is not properly handled by the (1) _cupsImageReadTIFF function in the imagetops filter and (2) imagetoraster filter, leading to a heap-based buffer overflow.

debian
около 16 лет назад

Integer overflow in the TIFF image decoding routines in CUPS 1.3.9 and ...

github
около 3 лет назад

Integer overflow in the TIFF image decoding routines in CUPS 1.3.9 and earlier allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a crafted TIFF image, which is not properly handled by the (1) _cupsImageReadTIFF function in the imagetops filter and (2) imagetoraster filter, leading to a heap-based buffer overflow.

fstec
около 16 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 90%
0.05696
Низкий

6.8 Medium

CVSS2