Description
Use-after-free vulnerability in CUPS before 1.1.22, and possibly other versions, allows remote attackers to cause a denial of service (crash) via crafted IPP packets.
CVSS vector
AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9Complexity: Low
Confidentiality: None
Integrity: None
Affected Packages1 packages
🔴Vulnerability Details
2GHSAGHSA-6r33-h68m-pxhm: Use-after-free vulnerability in CUPS before 1↗2022-05-01 ▶ CVEListCVE-2008-0597: Use-after-free vulnerability in CUPS before 1↗2008-02-26 ▶ 💥Exploits & PoCs
1Exploit-DBw3blabor CMS 3.3.0 - Authentication Bypass↗2009-01-01 ▶ 📋Vendor Advisories
2Red Hatcups: dereference of free'd memory handling IPP browse requests↗2008-02-25 ▶ DebianCVE-2008-0597: cups - Use-after-free vulnerability in CUPS before 1.1.22, and possibly other versions,...↗2008 ▶ 💬Community
1BugzillaCVE-2008-0597 cups: dereference of free'd memory handling IPP browse requests↗2008-02-21 ▶