Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Vincent Untz

#44784de 53,635
5.8CVSS total
Vulnerabilidades · 1
PT-2012-1034
5.8
2012-11-20
Cups · Cups-Pk-Helper · CVE-2012-4510
**Name of the Vulnerable Software and Affected Versions** cups-pk-helper versions prior to 0.2.3 **Description** The issue allows user-assisted remote attackers to read or overwrite sensitive files using CUPS resources due to improper wrapping of the `cupsGetFile` and `cupsPutFile` function calls. This can lead to a breach of confidentiality and integrity of protected information. The exploitation of this issue can be done remotely. **Recommendations** For versions prior to 0.2.3, update to version 0.2.3 or later to resolve the issue. As a temporary workaround, consider restricting access to CUPS resources to minimize the risk of exploitation.