cups: Several XSS flaws in forms processed by CUPS web interface
Published Nov 10, 2009
4.3
MEDIUMCVSS 2.0
EPSS 5.78%
Description
The web interface in CUPS before 1.4.2, as used on Apple Mac OS X before 10.6.2 and other platforms, does not properly handle (1) HTTP headers and (2) HTML templates, which allows remote attackers to conduct cross-site scripting (XSS) attacks and HTTP response splitting attacks via vectors related to (a) the product's web interface, (b) the configuration of the print system, and (c) the titles of printed jobs, as demonstrated by an XSS attack that uses the kerberos parameter to the admin program, and leverages attribute injection and HTTP Parameter Pollution (HPP) issues.
Affected products
No data.
Configuration 1
- ≤ 10.6.1
- 10.0
- 10.0.0
- 10.0.1
- 10.0.2
- 10.0.3
- 10.0.4
- 10.1
- 10.1.0
- 10.1.1
- 10.1.2
- 10.1.3
- 10.1.4
- 10.1.5
- 10.2
- 10.2.0
- 10.2.1
- 10.2.2
- 10.2.3
- 10.2.4
- 10.2.5
- 10.2.6
- 10.2.7
- 10.2.8
- 10.3
- 10.3.0
- 10.3.1
- 10.3.2
- 10.3.3
- 10.3.4
- 10.3.5
- 10.3.6
- 10.3.7
- 10.3.8
- 10.3.9
- 10.4
- 10.4.0
- 10.4.1
- 10.4.2
- 10.4.3
- 10.4.4
- 10.4.5
- 10.4.6
- 10.4.7
- 10.4.8
- 10.4.9
- 10.4.10
- 10.4.11
- 10.5
- 10.5.0
- 10.5.1
- 10.5.2
- 10.5.3
- 10.5.4
- 10.5.5
- 10.5.6
- 10.5.7
- 10.5.8
- 10.6
Configuration 2
- ≤ 10.6.1
- 10.0
- 10.0.0
- 10.0.1
- 10.0.2
- 10.0.3
- 10.0.4
- 10.1
- 10.1.0
- 10.1.1
- 10.1.2
- 10.1.3
- 10.1.4
- 10.1.5
- 10.2
- 10.2.0
- 10.2.1
- 10.2.2
- 10.2.3
- 10.2.4
- 10.2.5
- 10.2.6
- 10.2.7
- 10.2.8
- 10.3
- 10.3.0
- 10.3.1
- 10.3.2
- 10.3.3
- 10.3.4
- 10.3.5
- 10.3.6
- 10.3.7
- 10.3.8
- 10.3.9
- 10.4
- 10.4.0
- 10.4.1
- 10.4.2
- 10.4.3
- 10.4.4
- 10.4.5
- 10.4.6
- 10.4.7
- 10.4.8
- 10.4.9
- 10.4.10
- 10.4.11
- 10.5
- 10.5.0
- 10.5.1
- 10.5.2
- 10.5.3
- 10.5.4
- 10.5.5
- 10.5.6
- 10.5.7
- 10.5.8
- 10.6
No data.
Red Hat Enterprise Linux 5
cups-1:1.3.7-11.el5_4.4
Fixed · RHSA-2009:1595
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 | cups-1:1.3.7-11.el5_4.4 | Fixed | RHSA-2009:1595 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (18)
- http://lists.apple.com/archives/security-announce/2009/Nov/msg00000.html vendor-advisoryx_refsource_APPLEVendor Advisory
- http://secunia.com/advisories/37308 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/37360 third-party-advisoryx_refsource_SECUNIA
- http://sunsolve.sun.com/search/document.do?assetkey=1-77-1021115.1-1 vendor-advisoryx_refsource_SUNALERT
- http://support.apple.com/kb/HT3937 x_refsource_CONFIRMPatchVendor Advisory
- http://www.cups.org/articles.php?L590 x_refsource_CONFIRM
- http://www.cups.org/documentation.php/relnotes.html x_refsource_CONFIRM
- http://www.cups.org/str.php?L3367 x_refsource_CONFIRM
- http://www.mandriva.com/security/advisories?name=MDVSA-2010:072 vendor-advisoryx_refsource_MANDRIVA
- http://www.mandriva.com/security/advisories?name=MDVSA-2010:073 vendor-advisoryx_refsource_MANDRIVA
- http://www.redhat.com/support/errata/RHSA-2009-1595.html vendor-advisoryx_refsource_REDHAT
- http://www.securityfocus.com/bid/36956 vdb-entryx_refsource_BIDPatch
- http://www.vupen.com/english/advisories/2009/3184 vdb-entryx_refsource_VUPEN
- https://access.redhat.com/security/cve/CVE-2009-2820 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=529833 x_refsource_CONFIRMIssue Tracking
- https://nvd.nist.gov/vuln/detail/CVE-2009-2820
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9153 vdb-entrysignaturex_refsource_OVAL
- https://www.cve.org/CVERecord?id=CVE-2009-2820
Change history (0)
No recorded changes yet.