Summary
CUPS is prone to a NULL-pointer dereference vulnerability.
Successful exploits may allow attackers to execute arbitrary code with the privileges of a user running the application. Failed exploit attempts likely cause denial-of-service conditions.
CUPS versions prior to 1.4.4 are affected.
Solution
Updates are available. Please see the references for more information.
References
Severity
Classification
-
CVE CVE-2010-0542, CVE-2010-2431, CVE-2010-2432 -
CVSS Base Score: 6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
Related Vulnerabilities
- Adobe Reader 'file://' URL Information Disclosure Vulnerability Feb07 (Mac OS X)
- Adobe Reader Multiple Vulnerabilities - Aug07 (Windows)
- Apple Safari 'background' Remote Denial Of Service Vulnerability
- Apache CouchDB Web Administration Interface Cross Site Scripting Vulnerability
- Apple Safari Multiple Memory Corruption Vulnerabilities-02 Aug14 (Mac OS X)