cbcvebase.

Apple Cups vulnerabilities

127 known vulnerabilities affecting apple/cups.

Total CVEs
127
CISA KEV
0
Public exploits
16
Exploited in wild
1
Severity breakdown
CRITICAL21HIGH32MEDIUM62LOW12

Vulnerabilities

Page 5 of 7
CVE-2005-3191P4MEDIUMCVSS 5.1≥ 0, < 1.1.23-132005-12-07
CVE-2005-3191 [MEDIUM] CVE-2005-3191: Multiple heap-based buffer overflows in the (1) DCTStream::readProgressiveSOF and (2) DCTStream::readBaselineSOF functions in the DCT stream parsing c Multiple heap-based buffer overflows in the (1) DCTStream::readProgressiveSOF and (2) DCTStream::readBaselineSOF functions in the DCT stream parsing code (Stream.cc) in xpdf 3.01 and earlier, as used in products such as (a) Poppler, (b) teTeX, (c) KDE kpdf, (d) pdftohtml, (e) KOffice KWord, (f) CUPS, and (g) l
osv
CVE-2005-3193P4MEDIUMCVSS 5.1≥ 0, < 1.1.23-132005-12-07
CVE-2005-3193 [MEDIUM] CVE-2005-3193: Heap-based buffer overflow in the JPXStream::readCodestream function in the JPX stream parsing code (JPXStream Heap-based buffer overflow in the JPXStream::readCodestream function in the JPX stream parsing code (JPXStream.c) for xpdf 3.01 and earlier, as used in products such as (1) Poppler, (2) teTeX, (3) KDE kpdf, (4) CUPS, and (5) libextractor allows user-assisted attackers to cause a denial of service (heap corruption) and possibly execute arbitrary code
osv
CVE-2005-0206P4CRITICALCVSS 10.0≥ 0, < 1.1.22-72005-04-27
CVE-2005-0206 [CRITICAL] CVE-2005-0206: The patch for integer overflow vulnerabilities in Xpdf 2 The patch for integer overflow vulnerabilities in Xpdf 2.0 and 3.0 (CVE-2004-0888) is incomplete for 64-bit architectures on certain Linux distributions such as Red Hat, which could leave Xpdf users exposed to the original vulnerabilities.
osv
CVE-2014-5031P4MEDIUMCVSS 5.0≤ 1.7.4v1.7+4 more2014-07-29
CVE-2014-5031 [MEDIUM] CWE-264 CVE-2014-5031: The web interface in CUPS before 2.0 does not check that files have world-readable permissions, whic The web interface in CUPS before 2.0 does not check that files have world-readable permissions, which allows remote attackers to obtains sensitive information via unspecified vectors.
nvdosv
CVE-2023-32360P4MEDIUMCVSS 5.5≥ 0, < 2.3.3op2-3+deb11u4≥ 0, < 2.4.2-3+deb12u2+1 more2023-06-23
CVE-2023-32360 [MEDIUM] CVE-2023-32360: An authentication issue was addressed with improved state management An authentication issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, macOS Ventura 13.4. An unauthenticated user may be able to access recently printed documents.
osv
CVE-2010-0540P4MEDIUMCVSS 6.0≥ 0, < 1.4.4-12010-06-17
CVE-2010-0540 [MEDIUM] CVE-2010-0540: Cross-site request forgery (CSRF) vulnerability in the web interface in CUPS before 1 Cross-site request forgery (CSRF) vulnerability in the web interface in CUPS before 1.4.4, as used on Apple Mac OS X 10.5.8, Mac OS X 10.6 before 10.6.4, and other platforms, allows remote attackers to hijack the authentication of administrators for requests that change settings.
osv
CVE-2002-1372P4HIGHCVSS 7.5≥ 1.1.14, ≤ 1.1.172002-12-26
CVE-2002-1372 [HIGH] CWE-252 CVE-2002-1372: Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 does not properly check the return values o Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 does not properly check the return values of various file and socket operations, which could allow a remote attacker to cause a denial of service (resource exhaustion) by causing file descriptors to be assigned and not released, as demonstrated by fanta.
nvdosv
CVE-2023-32324P4MEDIUMCVSS 5.5≥ 0, < 2.3.3op2-3+deb11u3≥ 0, < 2.4.2-3+deb12u1+1 more2023-06-01
CVE-2023-32324 [MEDIUM] CVE-2023-32324: OpenPrinting CUPS is an open source printing system OpenPrinting CUPS is an open source printing system. In versions 2.4.2 and prior, a heap buffer overflow vulnerability would allow a remote attacker to launch a denial of service (DoS) attack. A buffer overflow vulnerability in the function `format_log_line` could allow remote attackers to cause a DoS on the affected system. Exploitation of the vulnerability can be triggered when the configuration file `c
osv
CVE-2008-1373P4LOWCVSS 2.6≥ 0, < 1.3.7-12008-04-04
CVE-2008-1373 [LOW] CVE-2008-1373: Buffer overflow in the gif_read_lzw function in CUPS 1 Buffer overflow in the gif_read_lzw function in CUPS 1.3.6 allows remote attackers to have an unknown impact via a GIF file with a large code_size value, a similar issue to CVE-2006-4484.
osv
CVE-2018-4181P4MEDIUMCVSS 5.5≥ 0, < 2.2.8-22019-01-11
CVE-2018-4181 [MEDIUM] CVE-2018-4181: In macOS High Sierra before 10 In macOS High Sierra before 10.13.5, an issue existed in CUPS. This issue was addressed with improved access restrictions.
osv
CVE-2019-2228P4MEDIUMCVSS 5.5≥ 0, < 2.3.1-12019-12-06
CVE-2019-2228 [MEDIUM] CVE-2019-2228: In array_find of array In array_find of array.c, there is a possible out-of-bounds read due to an incorrect bounds check. This could lead to local information disclosure in the printer spooler with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-111210196
osv
CVE-2020-10001P4MEDIUMCVSS 5.5≥ 0, < 2.3.3op2-12021-04-02
CVE-2020-10001 [MEDIUM] CVE-2020-10001: An input validation issue was addressed with improved memory handling An input validation issue was addressed with improved memory handling. This issue is fixed in macOS Big Sur 11.1, Security Update 2020-001 Catalina, Security Update 2020-007 Mojave. A malicious application may be able to read restricted memory.
osv
CVE-2025-58436P4MEDIUMCVSS 5.5≥ 0, < 2.4.1op1-1ubuntu4.16≥ 0, < 2.4.7-1.2ubuntu7.9+1 more2025-12-04
CVE-2025-58436 [MEDIUM] cups vulnerability cups vulnerability Johannes Meixner and Paul Zirnik discovered that CUPS incorrectly handled clients that send messages slowly. A remote attacker could possibly use this issue to cause CUPS to stop responding, resulting in a denial of service. (CVE-2025-58436) In addition, this update fixes a regression introduced in USN-7897-1 which resulted in certain invalid configuration file directives to cause the CUPS daemon to fail to start.
osv
CVE-2019-2180P4MEDIUMCVSS 5.5≥ 0, < 2.2.12-12019-09-05
CVE-2019-2180 [MEDIUM] CVE-2019-2180: In ippSetValueTag of ipp In ippSetValueTag of ipp.c in Android 8.0, 8.1 and 9, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure from the printer service with no additional execution privileges needed. User interaction is not needed for exploitation.
osv
CVE-2007-0720P4MEDIUMCVSS 5.0≥ 0, < 1.2.7-12007-03-13
CVE-2007-0720 [MEDIUM] CVE-2007-0720: The CUPS service on multiple platforms allows remote attackers to cause a denial of service (service hang) via a "partially-negotiated" SSL connection The CUPS service on multiple platforms allows remote attackers to cause a denial of service (service hang) via a "partially-negotiated" SSL connection, which prevents other requests from being accepted.
osv
CVE-2007-4045P4MEDIUMCVSS 5.0fixed in 1.2.02007-07-27
CVE-2007-4045 [MEDIUM] CVE-2007-4045: The CUPS service, as used in SUSE Linux before 20070720 and other Linux distributions, allows remote The CUPS service, as used in SUSE Linux before 20070720 and other Linux distributions, allows remote attackers to cause a denial of service via unspecified vectors related to an incomplete fix for CVE-2007-0720 that introduced a different denial of service problem in SSL negotiation.
nvdosv
CVE-2009-1196P4MEDIUMCVSS 5.0v1.1.17v1.1.222009-06-09
CVE-2009-1196 [MEDIUM] CWE-399 CVE-2009-1196: The directory-services functionality in the scheduler in CUPS 1.1.17 and 1.1.22 allows remote attack The directory-services functionality in the scheduler in CUPS 1.1.17 and 1.1.22 allows remote attackers to cause a denial of service (cupsd daemon outage or crash) via manipulations of the timing of CUPS browse packets, related to a "pointer use-after-delete flaw."
nvdosv
CVE-2010-2432P4MEDIUMCVSS 5.0≤ 1.4.3v1.1+60 more2010-06-22
CVE-2010-2432 [MEDIUM] CWE-399 CVE-2010-2432: The cupsDoAuthentication function in auth.c in the client in CUPS before 1.4.4, when HAVE_GSSAPI is The cupsDoAuthentication function in auth.c in the client in CUPS before 1.4.4, when HAVE_GSSAPI is omitted, does not properly handle a demand for authorization, which allows remote CUPS servers to cause a denial of service (infinite loop) via HTTP_UNAUTHORIZED responses.
nvdosv
CVE-2002-1384P4HIGHCVSS 7.2≥ 0, < 1.1.18-12003-01-02
CVE-2002-1384 [HIGH] CVE-2002-1384: Integer overflow in pdftops, as used in Xpdf 2 Integer overflow in pdftops, as used in Xpdf 2.01 and earlier, xpdf-i, and CUPS before 1.1.18, allows local users to execute arbitrary code via a ColorSpace entry with a large number of elements, as demonstrated by cups-pdf.
osv
CVE-2010-0393P4MEDIUMCVSS 6.9v1.2.2v1.3.7+2 more2010-03-05
CVE-2010-0393 [MEDIUM] CWE-264 CVE-2010-0393: The _cupsGetlang function, as used by lppasswd.c in lppasswd in CUPS 1.2.2, 1.3.7, 1.3.9, and 1.4.1, The _cupsGetlang function, as used by lppasswd.c in lppasswd in CUPS 1.2.2, 1.3.7, 1.3.9, and 1.4.1, relies on an environment variable to determine the file that provides localized message strings, which allows local users to gain privileges via a file that contains crafted localization data with format string specifiers.
nvdosv
Apple Cups vulnerabilities | cvebase