CVE
- Id
- 5752
- CVE No.
- CVE-2002-1368
- Status
- Candidate
- Description
- Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by causing negative arguments to be fed into memcpy() calls via HTTP requests with (1) a negative Content-Length value or (2) a negative length in a chunked transfer encoding.
- Phase
- Modified (20071220)
- Votes
- ACCEPT(3) Cole, Cox, Green | NOOP(1) Christey
- Comments
- Christey> MANDRAKE:MDKSA-2003:001
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
31985 | 5752 | CVE-2002-1368 | BUGTRAQ:20021219 iDEFENSE Security Advisory 12.19.02: Multiple Security Vulnerabilities in Common Unix Printing System (CUPS) | View |
31986 | 5752 | CVE-2002-1368 | URL:http://marc.info/?l=bugtraq&m=104032149026670&w=2 | View |
31987 | 5752 | CVE-2002-1368 | VULNWATCH:20021219 iDEFENSE Security Advisory 12.19.02: Multiple Security Vulnerabilities in Common Unix Printing System (CUPS) | View |
31988 | 5752 | CVE-2002-1368 | URL:http://archives.neohapsis.com/archives/vulnwatch/2002-q4/0117.html | View |
31989 | 5752 | CVE-2002-1368 | MISC:http://www.idefense.com/advisory/12.19.02.txt | View |
31990 | 5752 | CVE-2002-1368 | CALDERA:CSSA-2003-004.0 | View |
31991 | 5752 | CVE-2002-1368 | URL:ftp://ftp.sco.com/pub/security/OpenLinux/CSSA-2003-004.0.txt | View |
31992 | 5752 | CVE-2002-1368 | CONECTIVA:CLSA-2003:702 | View |
31993 | 5752 | CVE-2002-1368 | URL:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000702 | View |
31994 | 5752 | CVE-2002-1368 | DEBIAN:DSA-232 | View |
31995 | 5752 | CVE-2002-1368 | URL:http://www.debian.org/security/2003/dsa-232 | View |
31996 | 5752 | CVE-2002-1368 | MANDRAKE:MDKSA-2003:001 | View |
31997 | 5752 | CVE-2002-1368 | URL:http://www.mandriva.com/security/advisories?name=MDKSA-2003:001 | View |
31998 | 5752 | CVE-2002-1368 | REDHAT:RHSA-2002:295 | View |
31999 | 5752 | CVE-2002-1368 | URL:http://www.redhat.com/support/errata/RHSA-2002-295.html | View |
32000 | 5752 | CVE-2002-1368 | SUSE:SuSE-SA:2003:002 | View |
32001 | 5752 | CVE-2002-1368 | URL:http://www.novell.com/linux/security/advisories/2003_002_cups.html | View |
32002 | 5752 | CVE-2002-1368 | BID:6437 | View |
32003 | 5752 | CVE-2002-1368 | URL:http://www.securityfocus.com/bid/6437 | View |
32004 | 5752 | CVE-2002-1368 | SECUNIA:7907 | View |
32005 | 5752 | CVE-2002-1368 | URL:http://secunia.com/advisories/7907 | View |
32006 | 5752 | CVE-2002-1368 | SECUNIA:7756 | View |
32007 | 5752 | CVE-2002-1368 | URL:http://secunia.com/advisories/7756/ | View |
32008 | 5752 | CVE-2002-1368 | SECUNIA:7794 | View |
32009 | 5752 | CVE-2002-1368 | URL:http://secunia.com/advisories/7794 | View |
32010 | 5752 | CVE-2002-1368 | SECUNIA:7803 | View |
32011 | 5752 | CVE-2002-1368 | URL:http://secunia.com/advisories/7803 | View |
32012 | 5752 | CVE-2002-1368 | SECUNIA:7843 | View |
32013 | 5752 | CVE-2002-1368 | URL:http://secunia.com/advisories/7843 | View |
32014 | 5752 | CVE-2002-1368 | SECUNIA:7858 | View |
32015 | 5752 | CVE-2002-1368 | URL:http://secunia.com/advisories/7858 | View |
32016 | 5752 | CVE-2002-1368 | SECUNIA:7913 | View |
32017 | 5752 | CVE-2002-1368 | URL:http://secunia.com/advisories/7913/ | View |
32018 | 5752 | CVE-2002-1368 | SECUNIA:8080 | View |
32019 | 5752 | CVE-2002-1368 | URL:http://secunia.com/advisories/8080/ | View |
32020 | 5752 | CVE-2002-1368 | SECUNIA:9325 | View |
32021 | 5752 | CVE-2002-1368 | URL:http://secunia.com/advisories/9325/ | View |
32022 | 5752 | CVE-2002-1368 | XF:cups-neg-memcpy-bo(10909) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
64005 | JVNDB-2002-000332 | CUPS の memcpy() 関数における負の値の処理によるサービス運用妨害 (DoS) の脆弱性 | ------------ | CVE-2002-1368 | 5752 | 7.5 | http://jvndb.jvn.jp/ja/contents/2002/JVNDB-2002-000332.html | View |