Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2003-0195

CWE-2399 documents9 sources
Severity
5.0MEDIUM
EPSS
16.4%
top 5.14%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedJun 16
Latest updateApr 29

Description

CUPS before 1.1.19 allows remote attackers to cause a denial of service via a partial printing request to the IPP port (631), which does not time out.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

Debiancups< 1.1.19final-1+3

Patches

🔴Vulnerability Details

3
GHSA
GHSA-p8px-c24h-5p46: CUPS before 12022-04-29
OSV
CVE-2003-0195: CUPS before 12003-06-16
CVEList
CVE-2003-0195: CUPS before 12003-06-05

💥Exploits & PoCs

1
Exploit-DB
CUPS 1.1.x - Cupsd Request Method Denial of Service2003-05-20

📋Vendor Advisories

2
Red Hat
security flaw2003-05-27
Debian
CVE-2003-0195: cups - CUPS before 1.1.19 allows remote attackers to cause a denial of service via a pa...2003

📐Framework References

1
CWE
Failure to Handle Incomplete Element

💬Community

1
Bugzilla
CVE-2003-0195 security flaw2018-08-16
CVE-2003-0195 (MEDIUM CVSS 5) | CUPS before 1.1.19 allows remote at | cvebase.io