exploit the possibilities
Showing 1 - 1 of 1 RSS Feed

Files

Mandriva Linux Security Advisory 2010-073
Posted Apr 15, 2010
Authored by Mandriva | Site mandriva.com

Mandriva Linux Security Advisory 2010-073 - CUPS in does not properly handle (1) HTTP headers and (2) HTML templates, which allows remote attackers to conduct cross-site scripting (XSS) attacks and HTTP response splitting attacks via vectors related to (a) the product's web interface, (b) the configuration of the print system, and (c) the titles of printed jobs. Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS 1.3.7 and 1.3.10 allows remote attackers to cause a denial of service (daemon crash or hang) via a client disconnection during listing of a large number of print jobs, related to improperly maintaining a reference count. NOTE: some of these details are obtained from third party information. Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS 1.3.7, 1.3.9, 1.3.10, and 1.4.1, when kqueue or epoll is used, allows remote attackers to cause a denial of service (daemon crash or hang) via a client disconnection during listing of a large number of print jobs, related to improperly maintaining a reference count. NOTE: some of these details are obtained from third party information. NOTE: this vulnerability exists because of an incomplete fix for CVE-2009-3553. The _cupsGetlang function, as used by lppasswd.c in lppasswd in CUPS 1.2.2, 1.3.7, 1.3.9, and 1.4.1, relies on an environment variable to determine the file that provides localized message strings, which allows local users to gain privileges via a file that contains crafted localization data with format string specifiers. The updated packages have been patched to correct these issues. Packages for Mandriva Linux 2010.0 was missing with MDVSA-2010:073. This advisory provides packages for 2010.0 as well.

tags | advisory, remote, web, denial of service, local, xss
systems | linux, mandriva
advisories | CVE-2009-2820, CVE-2009-3553, CVE-2010-0302, CVE-2010-0393
MD5 | 0db35867e73b4b83c2d0f3301bd147e1
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

Recent News

News RSS Feed
Julian Assange's Extradition Hearing Set For 2020
Posted Jun 14, 2019

tags | headline, government, privacy, usa, britain, data loss, cyberwar, spyware
JavaScript Template Attacks Expose New Browser Fingerprinting Vectors
Posted Jun 14, 2019

tags | headline, flaw, spyware
High Severity Cisco Flaw In IOS XE Enables Device Takeover
Posted Jun 13, 2019

tags | headline, flaw, cisco
Facebook Emails Seem To Show Zuck Knew Of Privacy Issues
Posted Jun 13, 2019

tags | headline, privacy, email, data loss, facebook
Exim Email Servers Are Now Under Attack
Posted Jun 13, 2019

tags | headline, hacker, privacy, email, flaw
EFF Asks For DOJ Efforts To Break Facebook Encryption To Be Made Public
Posted Jun 13, 2019

tags | headline, government, privacy, usa, spyware, facebook, social, cryptography
Radiohead Sells Recordings To Public After Hacker Attempts Extortion
Posted Jun 12, 2019

tags | headline, hacker, cybercrime, data loss, fraud
Intel Fixes Severe NUC Firmware, Web Console Vulnerabilities
Posted Jun 12, 2019

tags | headline, flaw, patch, intel
Adobe Fixes Critical Security Flaws In Flash, ColdFusion, Campaign
Posted Jun 12, 2019

tags | headline, adobe, patch
Linux Command-Line Editors Vulnerable To High Severity Bug
Posted Jun 12, 2019

tags | headline, linux, flaw
View More News →
packet storm

© 2019 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close