PT-2004-1926 · Apple · Cups
Chris Evans
·
Published
2004-10-26
·
Updated
2017-07-11
·
CVE-2004-0889
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
xpdf version 3.0
CUPS (affected versions not specified)
Description:
The issue is related to multiple integer overflows in the xpdf code, which can be exploited by remote attackers to cause a denial of service, potentially leading to a crash, and possibly allowing the execution of arbitrary code.
Recommendations:
For xpdf version 3.0, update to a version that fixes the integer overflows.
For CUPS, apply the necessary patches or updates to address the vulnerabilities in the xpdf code used by CUPS.
At the moment, there is no information about a newer version that contains a fix for this vulnerability in CUPS.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Cups