Логотип exploitDog
bind:"CVE-2014-9679" OR bind:"CVE-2015-1159" OR bind:"CVE-2015-1158"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2014-9679" OR bind:"CVE-2015-1159" OR bind:"CVE-2015-1158"

Количество 25

Количество 25

oracle-oval логотип

ELSA-2015-1123

около 10 лет назад

ELSA-2015-1123: cups security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1044-2

около 10 лет назад

Security update for cups154

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1044-1

около 10 лет назад

Security update for cups154

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:1041-1

около 10 лет назад

Security update for cups

EPSS: Низкий
ubuntu логотип

CVE-2014-9679

больше 10 лет назад

Integer underflow in the cupsRasterReadPixels function in filter/raster.c in CUPS before 2.0.2 allows remote attackers to have unspecified impact via a malformed compressed raster file, which triggers a buffer overflow.

CVSS2: 6.8
EPSS: Низкий
redhat логотип

CVE-2014-9679

больше 10 лет назад

Integer underflow in the cupsRasterReadPixels function in filter/raster.c in CUPS before 2.0.2 allows remote attackers to have unspecified impact via a malformed compressed raster file, which triggers a buffer overflow.

CVSS2: 4.8
EPSS: Низкий
nvd логотип

CVE-2014-9679

больше 10 лет назад

Integer underflow in the cupsRasterReadPixels function in filter/raster.c in CUPS before 2.0.2 allows remote attackers to have unspecified impact via a malformed compressed raster file, which triggers a buffer overflow.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2014-9679

больше 10 лет назад

Integer underflow in the cupsRasterReadPixels function in filter/raste ...

CVSS2: 6.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0465-2

больше 10 лет назад

Security update for cups, cups154

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0465-1

больше 10 лет назад

Security update for cups, cups154

EPSS: Низкий
github логотип

GHSA-m7r3-4c7g-v5h3

больше 3 лет назад

Integer underflow in the cupsRasterReadPixels function in filter/raster.c in CUPS before 2.0.2 allows remote attackers to have unspecified impact via a malformed compressed raster file, which triggers a buffer overflow.

EPSS: Низкий
ubuntu логотип

CVE-2015-1159

около 10 лет назад

Cross-site scripting (XSS) vulnerability in the cgi_puts function in cgi-bin/template.c in the template engine in CUPS before 2.0.3 allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter to help/.

CVSS2: 4.3
EPSS: Средний
redhat логотип

CVE-2015-1159

около 10 лет назад

Cross-site scripting (XSS) vulnerability in the cgi_puts function in cgi-bin/template.c in the template engine in CUPS before 2.0.3 allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter to help/.

CVSS2: 4.3
EPSS: Средний
nvd логотип

CVE-2015-1159

около 10 лет назад

Cross-site scripting (XSS) vulnerability in the cgi_puts function in cgi-bin/template.c in the template engine in CUPS before 2.0.3 allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter to help/.

CVSS2: 4.3
EPSS: Средний
debian логотип

CVE-2015-1159

около 10 лет назад

Cross-site scripting (XSS) vulnerability in the cgi_puts function in c ...

CVSS2: 4.3
EPSS: Средний
ubuntu логотип

CVE-2015-1158

около 10 лет назад

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

CVSS2: 10
EPSS: Высокий
redhat логотип

CVE-2015-1158

около 10 лет назад

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

CVSS2: 6.8
EPSS: Высокий
nvd логотип

CVE-2015-1158

около 10 лет назад

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

CVSS2: 10
EPSS: Высокий
debian логотип

CVE-2015-1158

около 10 лет назад

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 ...

CVSS2: 10
EPSS: Высокий
suse-cvrf логотип

SUSE-SU-2015:1011-1

около 11 лет назад

Security update for CUPS

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2015-1123

ELSA-2015-1123: cups security update (IMPORTANT)

около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1044-2

Security update for cups154

около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1044-1

Security update for cups154

около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1041-1

Security update for cups

около 10 лет назад
ubuntu логотип
CVE-2014-9679

Integer underflow in the cupsRasterReadPixels function in filter/raster.c in CUPS before 2.0.2 allows remote attackers to have unspecified impact via a malformed compressed raster file, which triggers a buffer overflow.

CVSS2: 6.8
5%
Низкий
больше 10 лет назад
redhat логотип
CVE-2014-9679

Integer underflow in the cupsRasterReadPixels function in filter/raster.c in CUPS before 2.0.2 allows remote attackers to have unspecified impact via a malformed compressed raster file, which triggers a buffer overflow.

CVSS2: 4.8
5%
Низкий
больше 10 лет назад
nvd логотип
CVE-2014-9679

Integer underflow in the cupsRasterReadPixels function in filter/raster.c in CUPS before 2.0.2 allows remote attackers to have unspecified impact via a malformed compressed raster file, which triggers a buffer overflow.

CVSS2: 6.8
5%
Низкий
больше 10 лет назад
debian логотип
CVE-2014-9679

Integer underflow in the cupsRasterReadPixels function in filter/raste ...

CVSS2: 6.8
5%
Низкий
больше 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:0465-2

Security update for cups, cups154

5%
Низкий
больше 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:0465-1

Security update for cups, cups154

5%
Низкий
больше 10 лет назад
github логотип
GHSA-m7r3-4c7g-v5h3

Integer underflow in the cupsRasterReadPixels function in filter/raster.c in CUPS before 2.0.2 allows remote attackers to have unspecified impact via a malformed compressed raster file, which triggers a buffer overflow.

5%
Низкий
больше 3 лет назад
ubuntu логотип
CVE-2015-1159

Cross-site scripting (XSS) vulnerability in the cgi_puts function in cgi-bin/template.c in the template engine in CUPS before 2.0.3 allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter to help/.

CVSS2: 4.3
52%
Средний
около 10 лет назад
redhat логотип
CVE-2015-1159

Cross-site scripting (XSS) vulnerability in the cgi_puts function in cgi-bin/template.c in the template engine in CUPS before 2.0.3 allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter to help/.

CVSS2: 4.3
52%
Средний
около 10 лет назад
nvd логотип
CVE-2015-1159

Cross-site scripting (XSS) vulnerability in the cgi_puts function in cgi-bin/template.c in the template engine in CUPS before 2.0.3 allows remote attackers to inject arbitrary web script or HTML via the QUERY parameter to help/.

CVSS2: 4.3
52%
Средний
около 10 лет назад
debian логотип
CVE-2015-1159

Cross-site scripting (XSS) vulnerability in the cgi_puts function in c ...

CVSS2: 4.3
52%
Средний
около 10 лет назад
ubuntu логотип
CVE-2015-1158

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

CVSS2: 10
71%
Высокий
около 10 лет назад
redhat логотип
CVE-2015-1158

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

CVSS2: 6.8
71%
Высокий
около 10 лет назад
nvd логотип
CVE-2015-1158

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 performs incorrect free operations for multiple-value job-originating-host-name attributes, which allows remote attackers to trigger data corruption for reference-counted strings via a crafted (1) IPP_CREATE_JOB or (2) IPP_PRINT_JOB request, as demonstrated by replacing the configuration file and consequently executing arbitrary code.

CVSS2: 10
71%
Высокий
около 10 лет назад
debian логотип
CVE-2015-1158

The add_job function in scheduler/ipp.c in cupsd in CUPS before 2.0.3 ...

CVSS2: 10
71%
Высокий
около 10 лет назад
suse-cvrf логотип
SUSE-SU-2015:1011-1

Security update for CUPS

около 11 лет назад

Уязвимостей на страницу