Lucene search

K
ubuntucveUbuntu.comUB:CVE-2010-0542
HistoryJun 17, 2010 - 12:00 a.m.

CVE-2010-0542

2010-06-1700:00:00
ubuntu.com
ubuntu.com
19

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.011

Percentile

84.2%

The _WriteProlog function in texttops.c in texttops in the Text Filter
subsystem in CUPS before 1.4.4 does not check the return values of certain
calloc calls, which allows remote attackers to cause a denial of service
(NULL pointer dereference or heap memory corruption) or possibly execute
arbitrary code via a crafted file.

OSVersionArchitecturePackageVersionFilename
ubuntu9.04noarchcups<Β 1.3.9-17ubuntu3.9UNKNOWN
ubuntu9.10noarchcups<Β 1.4.1-5ubuntu2.6UNKNOWN
ubuntu10.04noarchcups<Β 1.4.3-1ubuntu1.2UNKNOWN
ubuntu6.06noarchcupsys<Β 1.2.2-0ubuntu0.6.06.19UNKNOWN
ubuntu8.04noarchcupsys<Β 1.3.7-1ubuntu3.11UNKNOWN

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.011

Percentile

84.2%