CVE-2005-2526Failure to Handle Incomplete Element in Software Products Cups

Severity
5.0MEDIUMNVD
EPSS
0.7%
top 27.07%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 19
Latest updateMay 1

Description

CUPS in Mac OS X 10.3.9 and 10.4.2 allows remote attackers to cause a denial of service (CPU consumption) by sending a partial IPP request and closing the connection.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

NVDapple/mac_os_x10.3.9, 10.4.2+1

Patches

🔴Vulnerability Details

2
GHSA
GHSA-rpmc-7fj9-hff3: CUPS in Mac OS X 102022-05-01
CVEList
CVE-2005-2526: CUPS in Mac OS X 102005-08-19

📐Framework References

1
CWE
Failure to Handle Incomplete Element
CVE-2005-2526 — Failure to Handle Incomplete Element | cvebase