CVE-2004-2154
published 2004-12-31CVE-2004-2154: CUPS before 1.1.21rc1 treats a Location directive in cupsd.conf as case sensitive, which allows attackers to bypass intended ACLs via a printer name containing…
PriorityP417critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
2.07%
79.5th percentile
CUPS before 1.1.21rc1 treats a Location directive in cupsd.conf as case sensitive, which allows attackers to bypass intended ACLs via a printer name containing uppercase or lowercase letters that are different from what is specified in the directive.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | cups | < 1.1.21 | 1.1.21 |
| apple | cups | — | — |
| apple | cups | >= 0 < 1.1.20final+rc1-1 | 1.1.20final+rc1-1 |
| apple | cups | >= 0 < 1.1.20final+rc1-1 | 1.1.20final+rc1-1 |
| apple | cups | >= 0 < 1.1.20final+rc1-1 | 1.1.20final+rc1-1 |
| apple | cups | >= 0 < 1.1.20final+rc1-1 | 1.1.20final+rc1-1 |
| canonical | ubuntu_linux | — | — |
| debian | cups | < cups 1.1.20final+rc1-1 (bookworm) | cups 1.1.20final+rc1-1 (bookworm) |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8LOW
vendor_redhat9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
CUPS vulnerability
vendor_ubuntu·2005-09-20
CVE-2004-2154 CUPS vulnerability
Title: CUPS vulnerability
Summary: CUPS vulnerability
A flaw was detected in the printer access control list checking in the
CUPS server. Printer names were compared in a case sensitive manner;
by modifying the capitalization of printer names, a remote attacker
could circumvent ACLs and print to printers he should not have access
to.
The Ubuntu 5.04 version of cupsys is not vulnerable against this.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
security flaw
vendor_redhat·2004-05-05·CVSS 9.8
CVE-2004-2154 [CRITICAL] security flaw
security flaw
CUPS before 1.1.21rc1 treats a Location directive in cupsd.conf as case sensitive, which allows attackers to bypass intended ACLs via a printer name containing uppercase or lowercase letters that are different from what is specified in the directive.
Debian
CVE-2004-2154: cups - CUPS before 1.1.21rc1 treats a Location directive in cupsd.conf as case sensitiv...
vendor_debian·2004·CVSS 9.8
CVE-2004-2154 [CRITICAL] CVE-2004-2154: cups - CUPS before 1.1.21rc1 treats a Location directive in cupsd.conf as case sensitiv...
CUPS before 1.1.21rc1 treats a Location directive in cupsd.conf as case sensitive, which allows attackers to bypass intended ACLs via a printer name containing uppercase or lowercase letters that are different from what is specified in the directive.
Scope: local
bookworm: resolved (fixed in 1.1.20final+rc1-1)
bullseye: resolved (fixed in 1.1.20final+rc1-1)
forky: resolved (fixed in 1.1.20final+rc1-1)
sid: resolved (fixed in 1.1.20final+rc1-1)
trixie: resolved (fixed in 1.1.20final+rc1-1)
GHSA
GHSA-vp74-83h5-6967: CUPS before 1
ghsa_unreviewed·2022-04-29
CVE-2004-2154 [HIGH] CWE-178 GHSA-vp74-83h5-6967: CUPS before 1
CUPS before 1.1.21rc1 treats a Location directive in cupsd.conf as case sensitive, which allows attackers to bypass intended ACLs via a printer name containing uppercase or lowercase letters that are different from what is specified in the directive.
OSV
CVE-2004-2154: CUPS before 1
osv·2004-12-31·CVSS 9.8
CVE-2004-2154 [CRITICAL] CVE-2004-2154: CUPS before 1
CUPS before 1.1.21rc1 treats a Location directive in cupsd.conf as case sensitive, which allows attackers to bypass intended ACLs via a printer name containing uppercase or lowercase letters that are different from what is specified in the directive.
No detection rules found.
No public exploits indexed.
http://www.cups.org/str.php?L700http://www.novell.com/linux/security/advisories/2005_18_sr.htmlhttp://www.redhat.com/support/errata/RHSA-2005-571.htmlhttp://www.ubuntu.com/usn/usn-185-1https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=162405https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=163274https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9940http://www.cups.org/str.php?L700http://www.novell.com/linux/security/advisories/2005_18_sr.htmlhttp://www.redhat.com/support/errata/RHSA-2005-571.htmlhttp://www.ubuntu.com/usn/usn-185-1https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=162405https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=163274https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9940
2004-12-31
Published