cbcvebase.
CVE-2002-1383
published 2002-12-26

CVE-2002-1383: Multiple integer overflows in Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allow remote attackers to execute arbitrary code via (1) the CUPSd HTTP…

PriorityP335critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
9.06%
94.7th percentile
Multiple integer overflows in Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allow remote attackers to execute arbitrary code via (1) the CUPSd HTTP interface, as demonstrated by vanilla-coke, and (2) the image handling code in CUPS filters, as demonstrated by mksun.

Affected

20 ranges
VendorProductVersion rangeFixed in
applecups>= 0 < 1.1.18-11.1.18-1
applecups>= 0 < 1.1.18-11.1.18-1
applecups>= 0 < 1.1.18-11.1.18-1
applecups>= 0 < 1.1.18-11.1.18-1
applemac_os_x
applemac_os_x
debiancups< cups 1.1.18-1 (bookworm)cups 1.1.18-1 (bookworm)
easy_software_productscups
easy_software_productscups
easy_software_productscups
easy_software_productscups
easy_software_productscups
easy_software_productscups
easy_software_productscups
easy_software_productscups
easy_software_productscups
easy_software_productscups
easy_software_productscups
easy_software_productscups
easy_software_productscups

CVSS provenance

nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv10.0CRITICAL
vendor_debian10.0CRITICAL
vendor_redhat10.0CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.