CVE Vulnerabilities

CVE-2014-4338

Published: Jun 22, 2014 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:N
RedHat/V2
4 MODERATE
AV:N/AC:H/Au:N/C:P/I:P/A:N
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

cups-browsed in cups-filters before 1.0.53 allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging a malformed cups-browsed.conf BrowseAllow directive that is interpreted as granting browse access to all IP addresses.

Affected Software

NameVendorStart VersionEnd Version
Cups-filtersLinuxfoundation*1.0.52 (including)
Red Hat Enterprise Linux 7RedHatcups-filters-0:1.0.35-15.el7_0.1*
Cups-filtersUbuntutrusty*
Cups-filtersUbuntuupstream*

References