Search CVE reports


Toggle filters

71 – 77 of 77 results


CVE-2004-1270

Medium priority
Fixed

lppasswd in CUPS 1.1.22, when run in environments that do not ensure that file descriptors 0, 1, and 2 are open when lppasswd is called, does not verify that the passwd.new file is different from STDERR, which allows local users...

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages

CVE-2004-1269

Medium priority
Fixed

lppasswd in CUPS 1.1.22 does not remove the passwd.new file if it encounters a file-size resource limit while writing to passwd.new, which causes subsequent invocations of lppasswd to fail.

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages

CVE-2004-1268

Medium priority
Fixed

lppasswd in CUPS 1.1.22 ignores write errors when modifying the CUPS passwd file, which allows local users to corrupt the file by filling the associated file system and triggering the write errors.

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages

CVE-2004-1267

Medium priority
Fixed

Buffer overflow in the ParseCommand function in hpgl-input.c in the hpgltops program for CUPS 1.1.22 allows remote attackers to execute arbitrary code via a crafted HPGL file.

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages

CVE-2004-1125

Medium priority
Fixed

Buffer overflow in the Gfx::doImage function in Gfx.cc for xpdf 3.00, and other products that share code such as tetex-bin and kpdf in KDE 3.2.x to 3.2.3 and 3.3.x to 3.3.2, allows remote attackers to cause a denial of service...

7 affected packages

gpdf, kdegraphics, koffice, tetex-bin, xpdf...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gpdf
kdegraphics
koffice
tetex-bin
xpdf
cupsys
pdftohtml
Show all 7 packages Show less packages

CVE-2004-2154

Medium priority
Not affected

CUPS before 1.1.21rc1 treats a Location directive in cupsd.conf as case sensitive, which allows attackers to bypass intended ACLs via a printer name containing uppercase or lowercase letters that are different from what is...

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages

CVE-2004-0558

Medium priority
Fixed

The Internet Printing Protocol (IPP) implementation in CUPS before 1.1.21 allows remote attackers to cause a denial of service (service hang) via a certain UDP packet to the IPP port.

1 affected package

cupsys

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cupsys
Show less packages