PT-2004-1926 · Apple · Cups

Chris Evans

·

Published

2004-10-26

·

Updated

2017-07-11

·

CVE-2004-0889

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: xpdf version 3.0 CUPS (affected versions not specified)
Description: The issue is related to multiple integer overflows in the xpdf code, which can be exploited by remote attackers to cause a denial of service, potentially leading to a crash, and possibly allowing the execution of arbitrary code.
Recommendations: For xpdf version 3.0, update to a version that fixes the integer overflows. For CUPS, apply the necessary patches or updates to address the vulnerabilities in the xpdf code used by CUPS. At the moment, there is no information about a newer version that contains a fix for this vulnerability in CUPS.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-0889

Affected Products

Cups