CVE Vulnerabilities

CVE-2002-1371

Published: Dec 26, 2002 | Modified: Oct 10, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

filters/image-gif.c in Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 does not properly check for zero-length GIF images, which allows remote attackers to execute arbitrary code via modified chunk headers, as demonstrated by nogif.

Affected Software

Name Vendor Start Version End Version
Cups Easy_software_products 1.0.4 (including) 1.0.4 (including)
Cups Easy_software_products 1.0.4_8 (including) 1.0.4_8 (including)
Cups Easy_software_products 1.1.1 (including) 1.1.1 (including)
Cups Easy_software_products 1.1.4 (including) 1.1.4 (including)
Cups Easy_software_products 1.1.4_2 (including) 1.1.4_2 (including)
Cups Easy_software_products 1.1.4_3 (including) 1.1.4_3 (including)
Cups Easy_software_products 1.1.4_5 (including) 1.1.4_5 (including)
Cups Easy_software_products 1.1.6 (including) 1.1.6 (including)
Cups Easy_software_products 1.1.7 (including) 1.1.7 (including)
Cups Easy_software_products 1.1.10 (including) 1.1.10 (including)
Cups Easy_software_products 1.1.13 (including) 1.1.13 (including)
Cups Easy_software_products 1.1.14 (including) 1.1.14 (including)
Cups Easy_software_products 1.1.17 (including) 1.1.17 (including)
Red Hat Linux 7.3 RedHat *
Red Hat Linux 8.0 RedHat *

References