CVE-2007-5848
published 2007-12-19CVE-2007-5848: Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to execute arbitrary code via a crafted URI to the CUPS service.
PriorityP427high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.55%
42.7th percentile
Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to execute arbitrary code via a crafted URI to the CUPS service.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | cups | >= 0 < 1.2.0 | 1.2.0 |
| apple | cups | >= 0 < 1.2.0 | 1.2.0 |
| apple | cups | >= 0 < 1.2.0 | 1.2.0 |
| apple | cups | >= 0 < 1.2.0 | 1.2.0 |
| apple | mac_os_x | — | — |
| debian | cups | < cups 1.2.0 (bookworm) | cups 1.2.0 (bookworm) |
CVSS provenance
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv7.2HIGH
vendor_debian7.2HIGH
vendor_redhat7.2HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
CUPS buffer overflow
vendor_redhat·2007-12-13·CVSS 7.2
CVE-2007-5848 [HIGH] CUPS buffer overflow
CUPS buffer overflow
Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to execute arbitrary code via a crafted URI to the CUPS service.
Statement: Not vulnerable.
After a detailed analysis of this flaw, it has been determined that it is not exploitable on Red Hat Enterprise Linux 3, 4, or 5. For more information please see:
https://bugzilla.redhat.com/show_bug.cgi?id=415141
Debian
CVE-2007-5848: cups - Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to ex...
vendor_debian·2007·CVSS 7.2
CVE-2007-5848 [HIGH] CVE-2007-5848: cups - Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to ex...
Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to execute arbitrary code via a crafted URI to the CUPS service.
Scope: local
bookworm: resolved (fixed in 1.2.0)
bullseye: resolved (fixed in 1.2.0)
forky: resolved (fixed in 1.2.0)
sid: resolved (fixed in 1.2.0)
trixie: resolved (fixed in 1.2.0)
GHSA
GHSA-x43f-4fv4-5h9f: Buffer overflow in CUPS in Apple Mac OS X 10
ghsa_unreviewed·2022-05-01
CVE-2007-5848 [HIGH] CWE-119 GHSA-x43f-4fv4-5h9f: Buffer overflow in CUPS in Apple Mac OS X 10
Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to execute arbitrary code via a crafted URI to the CUPS service.
OSV
CVE-2007-5848: Buffer overflow in CUPS in Apple Mac OS X 10
osv·2007-12-19·CVSS 7.2
CVE-2007-5848 [HIGH] CVE-2007-5848: Buffer overflow in CUPS in Apple Mac OS X 10
Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to execute arbitrary code via a crafted URI to the CUPS service.
No detection rules found.
No public exploits indexed.
http://docs.info.apple.com/article.html?artnum=307179http://lists.apple.com/archives/security-announce/2007/Dec/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-01/msg00003.htmlhttp://secunia.com/advisories/28136http://secunia.com/advisories/28344http://secunia.com/advisories/28441http://secunia.com/advisories/28636http://www.mandriva.com/security/advisories?name=MDVSA-2008:050http://www.novell.com/linux/security/advisories/suse_security_summary_report.htmlhttp://www.securityfocus.com/archive/1/485829/100/0/threadedhttp://www.securityfocus.com/bid/26910http://www.us-cert.gov/cas/techalerts/TA07-352A.htmlhttp://www.vupen.com/english/advisories/2007/4238https://exchange.xforce.ibmcloud.com/vulnerabilities/39096https://issues.rpath.com/browse/RPL-2009http://docs.info.apple.com/article.html?artnum=307179http://lists.apple.com/archives/security-announce/2007/Dec/msg00002.htmlhttp://lists.opensuse.org/opensuse-security-announce/2008-01/msg00003.htmlhttp://secunia.com/advisories/28136http://secunia.com/advisories/28344http://secunia.com/advisories/28441http://secunia.com/advisories/28636http://www.mandriva.com/security/advisories?name=MDVSA-2008:050http://www.novell.com/linux/security/advisories/suse_security_summary_report.htmlhttp://www.securityfocus.com/archive/1/485829/100/0/threadedhttp://www.securityfocus.com/bid/26910http://www.us-cert.gov/cas/techalerts/TA07-352A.htmlhttp://www.vupen.com/english/advisories/2007/4238https://exchange.xforce.ibmcloud.com/vulnerabilities/39096https://issues.rpath.com/browse/RPL-2009
2007-12-19
Published