[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

255116

 
 

909

 
 

198683

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2002-1368Date: (C)2002-12-26   (M)2023-12-22


Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by causing negative arguments to be fed into memcpy() calls via HTTP requests with (1) a negative Content-Length value or (2) a negative length in a chunked transfer encoding.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 7.5
Exploit Score: 10.0
Impact Score: 6.4
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: PARTIAL
Integrity: PARTIAL
Availability: PARTIAL
  
Reference:
http://marc.info/?l=bugtraq&m=104032149026670&w=2
BID-6437
SECUNIA-7756
SECUNIA-7794
SECUNIA-7803
SECUNIA-7843
SECUNIA-7858
SECUNIA-7907
SECUNIA-7913
SECUNIA-8080
SECUNIA-9325
CLSA-2003:702
CSSA-2003-004.0
DSA-232
MDKSA-2003:001
RHSA-2002:295
SuSE-SA:2003:002
cups-neg-memcpy-bo(10909)
http://www.idefense.com/advisory/12.19.02.txt

CPE    2
cpe:/o:apple:mac_os_x:10.2
cpe:/o:apple:mac_os_x:10.2.2

© SecPod Technologies