PT-2009-6737 · Suse+1 · Cups-Devel+8
Alin Rad Pop
+1
·
Published
1970-01-01
·
Updated
2019-03-06
·
CVE-2009-0165
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
cups versions (affected versions not specified)
cups-libs versions (affected versions not specified)
cups-libs-32bit versions (affected versions not specified)
cups-libs-x86 versions (affected versions not specified)
cups-client versions (affected versions not specified)
cups-debuginfo versions (affected versions not specified)
cups-debugsource versions (affected versions not specified)
cups-devel versions (affected versions not specified)
Xpdf version 3.02pl2 and earlier
Description
The issue involves multiple vulnerabilities in various packages of the SUSE Linux Enterprise operating system, including cups, cups-libs, cups-libs-32bit, cups-libs-x86, cups-client, cups-debuginfo, cups-debugsource, and cups-devel. These vulnerabilities can be exploited remotely and may lead to a breach of confidentiality, integrity, and availability of protected information. Additionally, an integer overflow vulnerability was found in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, which may have unspecified impact related to memory allocation.
Recommendations
For cups, cups-libs, cups-libs-32bit, cups-libs-x86, cups-client, cups-debuginfo, cups-debugsource, and cups-devel, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
For Xpdf version 3.02pl2 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Xpdf
Cups
Cups-Client
Cups-Debuginfo
Cups-Debugsource
Cups-Devel
Cups-Libs
Cups-Libs-32Bit
Cups-Libs-X86