cbcvebase.

Debian Cups vulnerabilities

116 known vulnerabilities affecting debian/cups.

Total CVEs
116
CISA KEV
0
Public exploits
16
Exploited in wild
1
Severity breakdown
CRITICAL13HIGH27MEDIUM49LOW27

Vulnerabilities

Page 6 of 6
CVE-2009-0166P4LOWCVSS 4.3fixed in poppler 0.10.6-1 (bookworm)2009
CVE-2009-0166 [MEDIUM] CVE-2009-0166: cups - The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other... The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allows remote attackers to cause a denial of service (crash) via a crafted PDF file that triggers a free of uninitialized memory. Scope: local bookworm: resolved bullseye: resolved forky: resolved sid: resolved trixie: resolved
debian
CVE-2013-6476P4MEDIUMCVSS 4.4fixed in cups 1.5.0-16 (bookworm)2013
CVE-2013-6476 [MEDIUM] CVE-2013-6476: cups - The OPVPWrapper::loadDriver function in oprs/OPVPWrapper.cxx in the pdftoopvp fi... The OPVPWrapper::loadDriver function in oprs/OPVPWrapper.cxx in the pdftoopvp filter in CUPS and cups-filters before 1.0.47 allows local users to gain privileges via a Trojan horse driver in the same directory as the PDF file. Scope: local bookworm: resolved (fixed in 1.5.0-16) bullseye: resolved (fixed in 1.5.0-16) forky: resolved (fixed in 1.5.0-16) sid: resolved (fi
debian
CVE-2005-3626P4MEDIUMCVSS 5.0fixed in cups 1.1.22-7 (bookworm)2005
CVE-2005-3626 [MEDIUM] CVE-2005-3626: cups - Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, l... Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (crash) via a crafted FlateDecode stream that triggers a null dereference. Scope: local bookworm: resolved (fixed in 1.1.22-7) bullseye: resolved (fixed in 1.1.22-7) forky: resolved (fixed in 1.1.22-7) sid: resolved (fix
debian
CVE-2008-1722P4MEDIUMCVSS 4.3fixed in cups 1.3.7-2 (bookworm)2008
CVE-2008-1722 [MEDIUM] CVE-2008-1722: cups - Multiple integer overflows in (1) filter/image-png.c and (2) filter/image-zoom.c... Multiple integer overflows in (1) filter/image-png.c and (2) filter/image-zoom.c in CUPS 1.3 allow attackers to cause a denial of service (crash) and trigger memory corruption, as demonstrated via a crafted PNG image. Scope: local bookworm: resolved (fixed in 1.3.7-2) bullseye: resolved (fixed in 1.3.7-2) forky: resolved (fixed in 1.3.7-2) sid: resolved (fixed in 1.3.7
debian
CVE-2007-6358P4LOWCVSS 4.9fixed in cups 1.3.5-1 (bookworm)2007
CVE-2007-6358 [MEDIUM] CVE-2007-6358: cups - pdftops.pl before 1.20 in alternate pdftops filter allows local users to overwri... pdftops.pl before 1.20 in alternate pdftops filter allows local users to overwrite arbitrary files via a symlink attack on the pdfin.[PID].tmp temporary file, which is created when pdftops reads a PDF file from stdin, such as when pdftops is invoked by CUPS. Scope: local bookworm: resolved (fixed in 1.3.5-1) bullseye: resolved (fixed in 1.3.5-1) forky: resolved (fixed
debian
CVE-2002-1366P4MEDIUMCVSS 6.2fixed in cups 1.1.18-1 (bookworm)2002
CVE-2002-1366 [MEDIUM] CVE-2002-1366: cups - Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows local users with... Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows local users with lp privileges to create or overwrite arbitrary files via file race conditions, as demonstrated by ice-cream. Scope: local bookworm: resolved (fixed in 1.1.18-1) bullseye: resolved (fixed in 1.1.18-1) forky: resolved (fixed in 1.1.18-1) sid: resolved (fixed in 1.1.18-1) trixie: resolved (fi
debian
CVE-2008-1033P4LOWCVSS 2.1fixed in cups 1.3.7-1 (bookworm)2008
CVE-2008-1033 [LOW] CVE-2008-1033: cups - The scheduler in CUPS in Apple Mac OS X 10.5 before 10.5.3, when debug logging i... The scheduler in CUPS in Apple Mac OS X 10.5 before 10.5.3, when debug logging is enabled and a printer requires a password, allows attackers to obtain sensitive information (credentials) by reading the log data, related to "authentication environment variables." Scope: local bookworm: resolved (fixed in 1.3.7-1) bullseye: resolved (fixed in 1.3.7-1) forky: resolved (fixe
debian
CVE-2014-5030P4LOWCVSS 1.9fixed in cups 1.7.4-2 (bookworm)2014
CVE-2014-5030 [LOW] CVE-2014-5030: cups - CUPS before 2.0 allows local users to read arbitrary files via a symlink attack ... CUPS before 2.0 allows local users to read arbitrary files via a symlink attack on (1) index.html, (2) index.class, (3) index.pl, (4) index.php, (5) index.pyc, or (6) index.py. Scope: local bookworm: resolved (fixed in 1.7.4-2) bullseye: resolved (fixed in 1.7.4-2) forky: resolved (fixed in 1.7.4-2) sid: resolved (fixed in 1.7.4-2) trixie: resolved (fixed in 1.7.4-2)
debian
CVE-2013-6891P4LOWCVSS 1.2fixed in cups 1.7.1-1 (bookworm)2013
CVE-2013-6891 [LOW] CVE-2013-6891: cups - lppasswd in CUPS before 1.7.1, when running with setuid privileges, allows local... lppasswd in CUPS before 1.7.1, when running with setuid privileges, allows local users to read portions of arbitrary files via a modified HOME environment variable and a symlink attack involving .cups/client.conf. Scope: local bookworm: resolved (fixed in 1.7.1-1) bullseye: resolved (fixed in 1.7.1-1) forky: resolved (fixed in 1.7.1-1) sid: resolved (fixed in 1.7.1-1) tri
debian
CVE-2014-3537P4LOWCVSS 1.2fixed in cups 1.7.4-1 (bookworm)2014
CVE-2014-3537 [LOW] CVE-2014-3537: cups - The web interface in CUPS before 1.7.4 allows local users in the lp group to rea... The web interface in CUPS before 1.7.4 allows local users in the lp group to read arbitrary files via a symlink attack on a file in /var/cache/cups/rss/. Scope: local bookworm: resolved (fixed in 1.7.4-1) bullseye: resolved (fixed in 1.7.4-1) forky: resolved (fixed in 1.7.4-1) sid: resolved (fixed in 1.7.4-1) trixie: resolved (fixed in 1.7.4-1)
debian
CVE-2014-5029P4LOWCVSS 1.2fixed in cups 1.7.4-2 (bookworm)2014
CVE-2014-5029 [LOW] CVE-2014-5029: cups - The web interface in CUPS 1.7.4 allows local users in the lp group to read arbit... The web interface in CUPS 1.7.4 allows local users in the lp group to read arbitrary files via a symlink attack on a file in /var/cache/cups/rss/ and language[0] set to null. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-3537. Scope: local bookworm: resolved (fixed in 1.7.4-2) bullseye: resolved (fixed in 1.7.4-2) forky: resolved (fixed in 1.7.
debian
CVE-2004-1268P4LOWCVSS 2.1fixed in cups 1.1.22-2 (bookworm)2004
CVE-2004-1268 [LOW] CVE-2004-1268: cups - lppasswd in CUPS 1.1.22 ignores write errors when modifying the CUPS passwd file... lppasswd in CUPS 1.1.22 ignores write errors when modifying the CUPS passwd file, which allows local users to corrupt the file by filling the associated file system and triggering the write errors. Scope: local bookworm: resolved (fixed in 1.1.22-2) bullseye: resolved (fixed in 1.1.22-2) forky: resolved (fixed in 1.1.22-2) sid: resolved (fixed in 1.1.22-2) trixie: resolve
debian
CVE-2005-2097P4LOWCVSS 2.1fixed in cups 1.1.22-7 (bookworm)2005
CVE-2005-2097 [LOW] CVE-2005-2097: cups - xpdf and kpdf do not properly validate the "loca" table in PDF files, which allo... xpdf and kpdf do not properly validate the "loca" table in PDF files, which allows local users to cause a denial of service (disk consumption and hang) via a PDF file with a "broken" loca table, which causes a large temporary file to be created when xpdf attempts to reconstruct the information. Scope: local bookworm: resolved (fixed in 1.1.22-7) bullseye: resolved (fixed
debian
CVE-2010-2431P4LOWCVSS 2.6fixed in cups 1.4.4-1 (bookworm)2010
CVE-2010-2431 [LOW] CVE-2010-2431: cups - The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group... The cupsFileOpen function in CUPS before 1.4.4 allows local users, with lp group membership, to overwrite arbitrary files via a symlink attack on the (1) /var/cache/cups/remote.cache or (2) /var/cache/cups/job.cache file. Scope: local bookworm: resolved (fixed in 1.4.4-1) bullseye: resolved (fixed in 1.4.4-1) forky: resolved (fixed in 1.4.4-1) sid: resolved (fixed in 1.4.
debian
CVE-2004-0923P4LOWCVSS 2.1fixed in cups 1.1.20final+rc1-9 (bookworm)2004
CVE-2004-0923 [LOW] CVE-2004-0923: cups - CUPS 1.1.20 and earlier records authentication information for a device URI in t... CUPS 1.1.20 and earlier records authentication information for a device URI in the error_log file, which allows local users to obtain user names and passwords. Scope: local bookworm: resolved (fixed in 1.1.20final+rc1-9) bullseye: resolved (fixed in 1.1.20final+rc1-9) forky: resolved (fixed in 1.1.20final+rc1-9) sid: resolved (fixed in 1.1.20final+rc1-9) trixie: resolved
debian
CVE-2004-1270P4LOWCVSS 2.1fixed in cups 1.1.22-2 (bookworm)2004
CVE-2004-1270 [LOW] CVE-2004-1270: cups - lppasswd in CUPS 1.1.22, when run in environments that do not ensure that file d... lppasswd in CUPS 1.1.22, when run in environments that do not ensure that file descriptors 0, 1, and 2 are open when lppasswd is called, does not verify that the passwd.new file is different from STDERR, which allows local users to control output to passwd.new via certain user input that triggers an error message. Scope: local bookworm: resolved (fixed in 1.1.22-2) bullse
debian
Debian Cups vulnerabilities | cvebase