Back

CRITICAL

cups: cupsd memory corruption vulnerability

Published Nov 5, 2010

Description

ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly execute arbitrary code via a crafted IPP request.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (32)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Nov 5, 2010
Updated Aug 7, 2024
Reserved Aug 4, 2010
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Important
Public date Oct 28, 2010