Apple Cups vulnerabilities
127 known vulnerabilities affecting apple/cups.
Total CVEs
127
CISA KEV
0
Public exploits
16
Exploited in wild
1
Severity breakdown
CRITICAL21HIGH32MEDIUM62LOW12
Vulnerabilities
Page 6 of 7
CVE-2005-2874P4MEDIUMCVSS 5.0≥ 0, < 1.1.23-12005-09-13
CVE-2005-2874 [MEDIUM] CVE-2005-2874: The is_path_absolute function in scheduler/client
The is_path_absolute function in scheduler/client.c for the daemon in CUPS before 1.1.23 allows remote attackers to cause a denial of service (CPU consumption by tight loop) via a "..\.." URL in an HTTP request.
osv
CVE-2009-0799P4MEDIUMCVSS 4.3≤ 1.3.9v1.1+54 more2009-04-23
CVE-2009-0799 [MEDIUM] CWE-119 CVE-2009-0799: The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and ot
The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to cause a denial of service (crash) via a crafted PDF file that triggers an out-of-bounds read.
nvd
CVE-2004-2154P4CRITICALCVSS 9.8fixed in 1.1.21v1.1.212004-12-31
CVE-2004-2154 [CRITICAL] CWE-178 CVE-2004-2154: CUPS before 1.1.21rc1 treats a Location directive in cupsd.conf as case sensitive, which allows atta
CUPS before 1.1.21rc1 treats a Location directive in cupsd.conf as case sensitive, which allows attackers to bypass intended ACLs via a printer name containing uppercase or lowercase letters that are different from what is specified in the directive.
nvdosv
CVE-2009-1183P4MEDIUMCVSS 4.3≤ 1.3.9v1.1+54 more2009-04-23
CVE-2009-1183 [MEDIUM] CWE-399 CVE-2009-1183: The JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, an
The JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to cause a denial of service (infinite loop and hang) via a crafted PDF file.
nvd
CVE-2014-2856P4MEDIUMCVSS 4.3≤ 1.7.1v1.1+81 more2014-04-18
CVE-2014-2856 [MEDIUM] CWE-79 CVE-2014-2856: Cross-site scripting (XSS) vulnerability in scheduler/client.c in Common Unix Printing System (CUPS)
Cross-site scripting (XSS) vulnerability in scheduler/client.c in Common Unix Printing System (CUPS) before 1.7.2 allows remote attackers to inject arbitrary web script or HTML via the URL path, related to the is_path_absolute function.
nvdosv
CVE-2009-1181P4MEDIUMCVSS 4.3≤ 1.3.9v1.1+54 more2009-04-23
CVE-2009-1181 [MEDIUM] CWE-399 CVE-2009-1181: The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and ot
The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to cause a denial of service (crash) via a crafted PDF file that triggers a NULL pointer dereference.
nvd
CVE-2009-0146P4MEDIUMCVSS 4.3≤ 1.3.9v1.1+54 more2009-04-23
CVE-2009-0146 [MEDIUM] CWE-119 CVE-2009-0146: Multiple buffer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier,
Multiple buffer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allow remote attackers to cause a denial of service (crash) via a crafted PDF file, related to (1) JBIG2SymbolDict::setBitmap and (2) JBIG2Stream::readSymbolDictSeg.
nvd
CVE-2019-8842P4LOWCVSS 3.3≥ 0, < 2.3.1-122020-10-27
CVE-2019-8842 [LOW] CVE-2019-8842: A buffer overflow was addressed with improved bounds checking
A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Catalina 10.15.2, Security Update 2019-002 Mojave, and Security Update 2019-007 High Sierra. In certain configurations, a remote attacker may be able to submit arbitrary print jobs.
osv
CVE-2003-0788P4MEDIUMCVSS 5.0≥ 0, < 1.1.192003-12-01
CVE-2003-0788 [MEDIUM] CVE-2003-0788: Unknown vulnerability in the Internet Printing Protocol (IPP) implementation in CUPS before 1
Unknown vulnerability in the Internet Printing Protocol (IPP) implementation in CUPS before 1.1.19 allows remote attackers to cause a denial of service (CPU consumption from a "busy loop") via certain inputs to the IPP port (TCP 631).
osv
CVE-2005-3624P4MEDIUMCVSS 5.0≥ 0, < 1.1.22-72005-12-31
CVE-2005-3624 [MEDIUM] CVE-2005-3624: The CCITTFaxStream::CCITTFaxStream function in Stream
The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large integers in a CCITTFaxDecode stream, which lead to integer overflows and integer underflows.
osv
CVE-2009-0147P4MEDIUMCVSS 4.3≤ 1.3.9v1.1+54 more2009-04-23
CVE-2009-0147 [MEDIUM] CWE-189 CVE-2009-0147: Multiple integer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier,
Multiple integer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allow remote attackers to cause a denial of service (crash) via a crafted PDF file, related to (1) JBIG2Stream::readSymbolDictSeg, (2) JBIG2Stream::readSymbolDictSeg, and (3) JBIG2Stream::readGenericBitmap.
nvd
CVE-2009-0166P4MEDIUMCVSS 4.3≤ 1.3.9v1.1+54 more2009-04-23
CVE-2009-0166 [MEDIUM] CWE-399 CVE-2009-0166: The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allows rem
The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allows remote attackers to cause a denial of service (crash) via a crafted PDF file that triggers a free of uninitialized memory.
nvd
CVE-2013-6476P4MEDIUMCVSS 4.4≥ 0, < 1.5.0-162014-03-14
CVE-2013-6476 [MEDIUM] CVE-2013-6476: The OPVPWrapper::loadDriver function in oprs/OPVPWrapper
The OPVPWrapper::loadDriver function in oprs/OPVPWrapper.cxx in the pdftoopvp filter in CUPS and cups-filters before 1.0.47 allows local users to gain privileges via a Trojan horse driver in the same directory as the PDF file.
osv
CVE-2005-3626P4MEDIUMCVSS 5.0≥ 0, < 1.1.22-72005-12-31
CVE-2005-3626 [MEDIUM] CVE-2005-3626: Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service
Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (crash) via a crafted FlateDecode stream that triggers a null dereference.
osv
CVE-2008-1722P4MEDIUMCVSS 4.3≥ 0, < 1.3.7-22008-04-10
CVE-2008-1722 [MEDIUM] CVE-2008-1722: Multiple integer overflows in (1) filter/image-png
Multiple integer overflows in (1) filter/image-png.c and (2) filter/image-zoom.c in CUPS 1.3 allow attackers to cause a denial of service (crash) and trigger memory corruption, as demonstrated via a crafted PNG image.
osv
CVE-2007-6358P4MEDIUMCVSS 4.9≥ 0, < 1.3.5-12007-12-15
CVE-2007-6358 [MEDIUM] CVE-2007-6358: pdftops
pdftops.pl before 1.20 in alternate pdftops filter allows local users to overwrite arbitrary files via a symlink attack on the pdfin.[PID].tmp temporary file, which is created when pdftops reads a PDF file from stdin, such as when pdftops is invoked by CUPS.
osv
CVE-2002-1366P4MEDIUMCVSS 6.2≥ 0, < 1.1.18-12002-12-26
CVE-2002-1366 [MEDIUM] CVE-2002-1366: Common Unix Printing System (CUPS) 1
Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows local users with lp privileges to create or overwrite arbitrary files via file race conditions, as demonstrated by ice-cream.
osv
CVE-2008-1033P4LOWCVSS 2.1≥ 0, < 1.3.7-12008-06-02
CVE-2008-1033 [LOW] CVE-2008-1033: The scheduler in CUPS in Apple Mac OS X 10
The scheduler in CUPS in Apple Mac OS X 10.5 before 10.5.3, when debug logging is enabled and a printer requires a password, allows attackers to obtain sensitive information (credentials) by reading the log data, related to "authentication environment variables."
osv
CVE-2014-5030P4LOWCVSS 1.9≤ 1.7.4v1.7+4 more2014-07-29
CVE-2014-5030 [LOW] CWE-59 CVE-2014-5030: CUPS before 2.0 allows local users to read arbitrary files via a symlink attack on (1) index.html, (
CUPS before 2.0 allows local users to read arbitrary files via a symlink attack on (1) index.html, (2) index.class, (3) index.pl, (4) index.php, (5) index.pyc, or (6) index.py.
nvdosv
CVE-2013-6891P4LOWCVSS 1.2≤ 1.7.0v1.7+1 more2014-01-26
CVE-2013-6891 [LOW] CWE-59 CVE-2013-6891: lppasswd in CUPS before 1.7.1, when running with setuid privileges, allows local users to read porti
lppasswd in CUPS before 1.7.1, when running with setuid privileges, allows local users to read portions of arbitrary files via a modified HOME environment variable and a symlink attack involving .cups/client.conf.
nvdosv