CVE-2008-0597
Publication date 26 February 2008
Last updated 24 July 2024
Ubuntu priority
Use-after-free vulnerability in CUPS before 1.1.22, and possibly other versions, allows remote attackers to cause a denial of service (crash) via crafted IPP packets.
Status
Package | Ubuntu Release | Status |
---|---|---|
cupsys | ||
Notes
jdstrand
patched code doesn't exist in 1.2. Also 1.2 and higher uses cupsArrayRestore(), which uses similar checks as the patched code
Patch details
Package | Patch details |
---|---|
cupsys |