PT-2002-3144 · Apple · Cups
Published
1970-01-01
·
Updated
2017-10-10
·
CVE-2002-1366
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
CUPS versions 1.1.14 through 1.1.17
Description
The issue affects the Common Unix Printing System (CUPS) and can lead to a breach of confidentiality, integrity, and availability of protected information. Exploitation can be carried out remotely. Local users with lp privileges can create or overwrite arbitrary files via file race conditions.
Recommendations
For versions 1.1.14 through 1.1.17, consider updating to a version outside of this range to mitigate the risk, as no specific fix is provided within the given information. As a temporary workaround, consider restricting access to the lp privileges to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cups