Solution
Please Install the Updated Packages.
Insight
Francisco Alonso discovered that the CUPS web interface incorrectly validated permissions on rss files. A local attacker could possibly use this issue to bypass file permissions and read arbitrary files, possibly leading to a privilege escalation.
Affected
cups on Ubuntu 14.04 LTS ,
Ubuntu 12.04 LTS ,
Ubuntu 10.04 LTS
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2014-3537 -
CVSS Base Score: 1.2
AV:L/AC:H/Au:N/C:P/I:N/A:N
Related Vulnerabilities