CVE-2014-5030
published 2014-07-29CVE-2014-5030: CUPS before 2.0 allows local users to read arbitrary files via a symlink attack on (1) index.html, (2) index.class, (3) index.pl, (4) index.php, (5) index.pyc…
PriorityP411low1.9CVSS 2.0
AVLACMAuNCPINAN
EPSS
0.36%
28.8th percentile
CUPS before 2.0 allows local users to read arbitrary files via a symlink attack on (1) index.html, (2) index.class, (3) index.pl, (4) index.php, (5) index.pyc, or (6) index.py.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | cups | <= 1.7.4 | — |
| apple | cups | — | — |
| apple | cups | — | — |
| apple | cups | — | — |
| apple | cups | — | — |
| apple | cups | — | — |
| apple | cups | >= 0 < 1.7.4-2 | 1.7.4-2 |
| apple | cups | >= 0 < 1.7.4-2 | 1.7.4-2 |
| apple | cups | >= 0 < 1.7.4-2 | 1.7.4-2 |
| apple | cups | >= 0 < 1.7.4-2 | 1.7.4-2 |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | cups | < cups 1.7.4-2 (bookworm) | cups 1.7.4-2 (bookworm) |
CVSS provenance
nvdv2.01.9LOWAV:L/AC:M/Au:N/C:P/I:N/A:N
osv6.1MEDIUM
vendor_debian1.9LOW
vendor_redhat1.9LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
CUPS vulnerabilities
vendor_ubuntu·2014-09-08
CVE-2014-5029 CUPS vulnerabilities
Title: CUPS vulnerabilities
Summary: CUPS could be made to expose sensitive information, leading to privilege
escalation.
Salvatore Bonaccorso discovered that the CUPS web interface incorrectly
validated permissions and incorrectly handled symlinks. An attacker could
possibly use this issue to bypass file permissions and read arbitrary
files, possibly leading to a privilege escalation.
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
cups: allows local users to read arbitrary files via a symlink attack
vendor_redhat·2014-07-22·CVSS 1.9
CVE-2014-5030 [LOW] CWE-59 cups: allows local users to read arbitrary files via a symlink attack
cups: allows local users to read arbitrary files via a symlink attack
CUPS before 2.0 allows local users to read arbitrary files via a symlink attack on (1) index.html, (2) index.class, (3) index.pl, (4) index.php, (5) index.pyc, or (6) index.py.
It was discovered that CUPS allowed certain users to create symbolic links in certain directories under /var/cache/cups/. A local user with the 'lp' group privileges could use this flaw to read the contents of arbitrary files on the system or, potentially, escalate their privileges on the system.
Statement: This issue is not planned to be fixed in Red Hat Enterprise Linux 5 as it is now in Production 3 Phase of the support and maintenance life cycle, https://access.redhat.com/support/policy/updates/errata/
Package: cups (Red Hat Enterprise Lin
Debian
CVE-2014-5030: cups - CUPS before 2.0 allows local users to read arbitrary files via a symlink attack ...
vendor_debian·2014·CVSS 1.9
CVE-2014-5030 [LOW] CVE-2014-5030: cups - CUPS before 2.0 allows local users to read arbitrary files via a symlink attack ...
CUPS before 2.0 allows local users to read arbitrary files via a symlink attack on (1) index.html, (2) index.class, (3) index.pl, (4) index.php, (5) index.pyc, or (6) index.py.
Scope: local
bookworm: resolved (fixed in 1.7.4-2)
bullseye: resolved (fixed in 1.7.4-2)
forky: resolved (fixed in 1.7.4-2)
sid: resolved (fixed in 1.7.4-2)
trixie: resolved (fixed in 1.7.4-2)
GHSA
GHSA-f4q9-g8vj-q74x: CUPS before 2
ghsa_unreviewed·2022-05-17
CVE-2014-5030 [LOW] CWE-59 GHSA-f4q9-g8vj-q74x: CUPS before 2
CUPS before 2.0 allows local users to read arbitrary files via a symlink attack on (1) index.html, (2) index.class, (3) index.pl, (4) index.php, (5) index.pyc, or (6) index.py.
OSV
libdbi-perl vulnerabilities
osv·2022-02-03·CVSS 6.1
CVE-2014-10402 libdbi-perl vulnerabilities
libdbi-perl vulnerabilities
USN-5030-1 addressed vulnerabilities in Perl DBI module. This
update provides the corresponding updates for Ubuntu 16.04 ESM.
Original advisory details:
It was discovered that the Perl DBI module incorrectly opened files outside
of the folder specified in the data source name. A remote attacker could
possibly use this issue to obtain sensitive information. (CVE-2014-10402)
It was discovered that the Perl DBI module incorrectly handled certain long
strings. A local attacker could possibly use this issue to cause the DBI
module to crash, resulting in a denial of service. (CVE-2020-14393)
OSV
CVE-2014-5030: CUPS before 2
osv·2014-07-29·CVSS 1.9
CVE-2014-5030 [LOW] CVE-2014-5030: CUPS before 2
CUPS before 2.0 allows local users to read arbitrary files via a symlink attack on (1) index.html, (2) index.class, (3) index.pl, (4) index.php, (5) index.pyc, or (6) index.py.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2014-5030 cups: allows local users to read arbitrary files via a symlink attack
bugzilla·2014-08-11·CVSS 1.9
CVE-2014-5030 [LOW] CVE-2014-5030 cups: allows local users to read arbitrary files via a symlink attack
CVE-2014-5030 cups: allows local users to read arbitrary files via a symlink attack
It was reported [1] that CUPS allow local users to read arbitrary files via symlink attack on the directory index files:
index.html
index.class
index.pl
index.php
index.pyc
index.py
Upstream patches are available at [2] as well.
[1]: http://seclists.org/oss-sec/2014/q3/209
[2]: https://cups.org/str.php?L4455
Discussion:
Created cups tracking bugs for this issue:
Affects: fedora-all [bug 1128775]
---
Statement:
This issue is not planned to be fixed in Red Hat Enterprise Linux 5 as it is now in Production 3 Phase of the support and maintenance life cycle, https://access.redhat.com/support/policy/updates/errata/
---
IssueDescription:
It was discovered that CUPS allowed certain users to create symb
Bugzilla
CVE-2014-5030 cups: various flaws [fedora-all]
bugzilla·2014-08-11·CVSS 1.9
CVE-2014-5030 [LOW] CVE-2014-5030 cups: various flaws [fedora-all]
CVE-2014-5030 cups: various flaws [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, use the bodhi submission link noted
in the next comment(s). This will include the bug IDs of this tracking
bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
NOTE: this issue affects multiple supported versions of Fedora. W
Bugzilla
CVE-2014-5029 CVE-2014-5030 CVE-2014-5031 cups: Incomplete fix for CVE-2014-3537 [fedora-all]
bugzilla·2014-07-23·CVSS 1.2
CVE-2014-5029 [LOW] CVE-2014-5029 CVE-2014-5030 CVE-2014-5031 cups: Incomplete fix for CVE-2014-3537 [fedora-all]
CVE-2014-5029 CVE-2014-5030 CVE-2014-5031 cups: Incomplete fix for CVE-2014-3537 [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, use the bodhi submission link noted
in the next comment(s). This will include the bug IDs of this tracking
bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
NOTE: this issue a
Bugzilla
CVE-2014-5029 cups: Incomplete fix for CVE-2014-3537
bugzilla·2014-07-23·CVSS 1.2
CVE-2014-5029 [LOW] CVE-2014-5029 cups: Incomplete fix for CVE-2014-3537
CVE-2014-5029 cups: Incomplete fix for CVE-2014-3537
It was reported [1] that a fix for CVE-2014-3537 [2] is not complete.
In some cases privilege escalation is still possible [3].
Upstream patches are available at [3] as well.
[1]: http://seclists.org/oss-sec/2014/q3/209
[2]: https://cups.org/str.php?L4450
[3]: https://cups.org/str.php?L4455
Discussion:
Created cups tracking bugs for this issue:
Affects: fedora-all [bug 1122601]
---
cups-1.7.4-3.fc20 has been pushed to the Fedora 20 stable repository. If problems still persist, please make note of it in this bug report.
---
As noted in MITRE's CVE request:
CVE-2014-5029 is for "if language[0] is null, we do not reach the lstat calls for filename and afterwards"
CVE-2014-5030 is for "add similar protections to the directory inde
http://advisories.mageia.org/MGASA-2014-0313.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1388.htmlhttp://secunia.com/advisories/60509http://secunia.com/advisories/60787http://www.debian.org/security/2014/dsa-2990http://www.mandriva.com/security/advisories?name=MDVSA-2015:108http://www.openwall.com/lists/oss-security/2014/07/22/13http://www.openwall.com/lists/oss-security/2014/07/22/2http://www.ubuntu.com/usn/USN-2341-1https://cups.org/str.php?L4455http://advisories.mageia.org/MGASA-2014-0313.htmlhttp://rhn.redhat.com/errata/RHSA-2014-1388.htmlhttp://secunia.com/advisories/60509http://secunia.com/advisories/60787http://www.debian.org/security/2014/dsa-2990http://www.mandriva.com/security/advisories?name=MDVSA-2015:108http://www.openwall.com/lists/oss-security/2014/07/22/13http://www.openwall.com/lists/oss-security/2014/07/22/2http://www.ubuntu.com/usn/USN-2341-1https://cups.org/str.php?L4455
2014-07-29
Published