Train

PDA

توجه ! این یک نسخه آرشیو شده میباشد و در این حالت شما عکسی را مشاهده نمیکنید برای مشاهده کامل متن و عکسها بر روی لینک مقابل کلیک کنید : CUPS Unspecified Denial of Service Vulnerability


NI3
11-04-2003, 12:28 PM
TITLE:
CUPS Unspecified Denial of Service Vulnerability

SECUNIA ADVISORY ID:
SA10123

VERIFY ADVISORY:
[Only registered and activated users can see links]

CRITICAL:
Less critical

IMPACT:
DoS

WHERE:
From local network

SOFTWARE:
CUPS 1.x

DESCRIPTION:
A vulnerability has been reported in CUPS, which can be exploited by
malicious people to cause a Denial of Service.

The vulnerability is caused due to an unspecified error, which can be
exploited to cause CUPS IPP to enter an infinate loop.

Successful exploitation requires that a connection can be established
to port 631/tcp.

The vulnerability affects version 1.1.19 and prior.

SOLUTION:
Restrict access to ensure that only trusted users can access the
service.

Upgrade to a newer version:
[Only registered and activated users can see links]

REPORTED BY / CREDITS:
Paul Mitcheson

----------------------------------------------------------------------