CVE Vulnerabilities

CVE-2002-1368

Published: Dec 26, 2002 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by causing negative arguments to be fed into memcpy() calls via HTTP requests with (1) a negative Content-Length value or (2) a negative length in a chunked transfer encoding.

Affected Software

Name Vendor Start Version End Version
Cups Easy_software_products 1.0.4 (including) 1.0.4 (including)
Cups Easy_software_products 1.0.4_8 (including) 1.0.4_8 (including)
Cups Easy_software_products 1.1.1 (including) 1.1.1 (including)
Cups Easy_software_products 1.1.4 (including) 1.1.4 (including)
Cups Easy_software_products 1.1.4_2 (including) 1.1.4_2 (including)
Cups Easy_software_products 1.1.4_3 (including) 1.1.4_3 (including)
Cups Easy_software_products 1.1.4_5 (including) 1.1.4_5 (including)
Cups Easy_software_products 1.1.6 (including) 1.1.6 (including)
Cups Easy_software_products 1.1.7 (including) 1.1.7 (including)
Cups Easy_software_products 1.1.10 (including) 1.1.10 (including)
Cups Easy_software_products 1.1.13 (including) 1.1.13 (including)
Cups Easy_software_products 1.1.14 (including) 1.1.14 (including)
Cups Easy_software_products 1.1.17 (including) 1.1.17 (including)
Red Hat Linux 7.3 RedHat *
Red Hat Linux 8.0 RedHat *

References