CVE-2011-4405
published 2011-11-29CVE-2011-4405: The cupshelpers scripts in system-config-printer in Ubuntu 11.04 and 11.10, as used by the automatic printer driver download service, uses an "insecure…
PriorityP345high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
3.45%
87.7th percentile
The cupshelpers scripts in system-config-printer in Ubuntu 11.04 and 11.10, as used by the automatic printer driver download service, uses an "insecure connection" for queries to the OpenPrinting database, which allows remote attackers to execute arbitrary code via a man-in-the-middle (MITM) attack that modifies packages or repositories.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | system-config-printer | < system-config-printer 1.3.7-1 (bookworm) | system-config-printer 1.3.7-1 (bookworm) |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5LOW
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-hjc8-mc2g-pvm8: The cupshelpers scripts in system-config-printer in Ubuntu 11
ghsa_unreviewed·2022-05-17
CVE-2011-4405 [HIGH] CWE-20 GHSA-hjc8-mc2g-pvm8: The cupshelpers scripts in system-config-printer in Ubuntu 11
The cupshelpers scripts in system-config-printer in Ubuntu 11.04 and 11.10, as used by the automatic printer driver download service, uses an "insecure connection" for queries to the OpenPrinting database, which allows remote attackers to execute arbitrary code via a man-in-the-middle (MITM) attack that modifies packages or repositories.
OSV
CVE-2011-4405: The cupshelpers scripts in system-config-printer in Ubuntu 11
osv·2011-11-29·CVSS 7.5
CVE-2011-4405 [HIGH] CVE-2011-4405: The cupshelpers scripts in system-config-printer in Ubuntu 11
The cupshelpers scripts in system-config-printer in Ubuntu 11.04 and 11.10, as used by the automatic printer driver download service, uses an "insecure connection" for queries to the OpenPrinting database, which allows remote attackers to execute arbitrary code via a man-in-the-middle (MITM) attack that modifies packages or repositories.
Ubuntu
system-config-printer vulnerability
vendor_ubuntu·2011-11-17
CVE-2011-4405 system-config-printer vulnerability
Title: system-config-printer vulnerability
Summary: An attacker could trick system-config-printer into installing altered
packages and repositories.
Marc Deslauriers discovered that system-config-printer's cupshelpers
scripts used by the Ubuntu automatic printer driver download service
queried the OpenPrinting database using an insecure connection. If a remote
attacker were able to perform a machine-in-the-middle attack, this flaw could
be exploited to install altered packages and repositories.
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Red Hat
system-config-printer: possible MITM due to use of insecure connections
vendor_redhat·2011-11-16·CVSS 7.5
CVE-2011-4405 [HIGH] system-config-printer: possible MITM due to use of insecure connections
system-config-printer: possible MITM due to use of insecure connections
The cupshelpers scripts in system-config-printer in Ubuntu 11.04 and 11.10, as used by the automatic printer driver download service, uses an "insecure connection" for queries to the OpenPrinting database, which allows remote attackers to execute arbitrary code via a man-in-the-middle (MITM) attack that modifies packages or repositories.
Statement: Not vulnerable. This issue did not affect the versions of system-config-printer as shipped with Red Hat Enterprise Linux 4, 5, or 6 as they did not include support for installing driver packages from the OpenPrinting database, only PPDs (with user consent).
Package: system-config-printer (Red Hat Enterprise Linux 5) - Not affected
Package: system-config-printer (Red Hat
Debian
CVE-2011-4405: system-config-printer - The cupshelpers scripts in system-config-printer in Ubuntu 11.04 and 11.10, as u...
vendor_debian·2011·CVSS 7.5
CVE-2011-4405 [HIGH] CVE-2011-4405: system-config-printer - The cupshelpers scripts in system-config-printer in Ubuntu 11.04 and 11.10, as u...
The cupshelpers scripts in system-config-printer in Ubuntu 11.04 and 11.10, as used by the automatic printer driver download service, uses an "insecure connection" for queries to the OpenPrinting database, which allows remote attackers to execute arbitrary code via a man-in-the-middle (MITM) attack that modifies packages or repositories.
Scope: local
bookworm: resolved (fixed in 1.3.7-1)
bullseye: resolved (fixed in 1.3.7-1)
forky: resolved (fixed in 1.3.7-1)
sid: resolved (fixed in 1.3.7-1)
trixie: resolved (fixed in 1.3.7-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2011-4405 system-config-printer: possible MITM due to use of insecure connections
bugzilla·2011-11-29·CVSS 7.5
CVE-2011-4405 [HIGH] CVE-2011-4405 system-config-printer: possible MITM due to use of insecure connections
CVE-2011-4405 system-config-printer: possible MITM due to use of insecure connections
Common Vulnerabilities and Exposures assigned an identifier CVE-2011-4405 to
the following vulnerability:
Name: CVE-2011-4405
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4405
Assigned: 20111107
Reference: http://www.ubuntu.com/usn/USN-1265-1
Reference: http://www.securityfocus.com/bid/50721
Reference: http://osvdb.org/77214
Reference: http://secunia.com/advisories/46909
Reference: XF:systemconfigprinter-packages-mitm(71394)
Reference: http://xforce.iss.net/xforce/xfdb/71394
The cupshelpers scripts in system-config-printer in Ubuntu 11.04 and
11.10, as used by the automatic printer driver download service, uses
an "insecure connection" for queries to the OpenPrinting database,
which allo
Bugzilla
CVE-2011-4405 system-config-printer: possible MITM due to use of insecure connections [fedora-all]
bugzilla·2011-11-29·CVSS 7.5
CVE-2011-4405 [HIGH] CVE-2011-4405 system-config-printer: possible MITM due to use of insecure connections [fedora-all]
CVE-2011-4405 system-config-printer: possible MITM due to use of insecure connections [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproject.org/upda
http://osvdb.org/77214http://secunia.com/advisories/46909http://www.securityfocus.com/bid/50721http://www.ubuntu.com/usn/USN-1265-1https://exchange.xforce.ibmcloud.com/vulnerabilities/71394http://osvdb.org/77214http://secunia.com/advisories/46909http://www.securityfocus.com/bid/50721http://www.ubuntu.com/usn/USN-1265-1https://exchange.xforce.ibmcloud.com/vulnerabilities/71394
2011-11-29
Published