Search CVE reports


Toggle filters

21 – 30 of 139 results


CVE-2019-2228

Low priority

Some fixes available 3 of 4

In array_find of array.c, there is a possible out-of-bounds read due to an incorrect bounds check. This could lead to local information disclosure in the printer spooler with no additional execution privileges needed....

1 affected package

cups

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cups Not affected Fixed
Show less packages

CVE-2019-2180

Low priority
Fixed

In ippSetValueTag of ipp.c in Android 8.0, 8.1 and 9, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure from the printer service with no additional execution...

1 affected package

cups

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cups Not affected Not affected Fixed
Show less packages

CVE-2019-8696

Medium priority
Fixed

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.6, Security Update 2019-004 High Sierra, Security Update 2019-004 Sierra. An attacker in a privileged network position...

1 affected package

cups

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cups Fixed
Show less packages

CVE-2019-8675

Medium priority
Fixed

A buffer overflow issue was addressed with improved memory handling. This issue is fixed in macOS Mojave 10.14.6, Security Update 2019-004 High Sierra, Security Update 2019-004 Sierra. An attacker in a privileged network position...

1 affected package

cups

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cups Fixed
Show less packages

CVE-2018-4300

Medium priority
Fixed

The session cookie generated by the CUPS web interface was easy to guess on Linux, allowing unauthorized scripted access to the web interface when the web interface is enabled. This issue affected versions prior to v2.2.10.

1 affected package

cups

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cups Not affected Fixed
Show less packages

CVE-2018-4700

Medium priority
Fixed

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-4300. Reason: This candidate is a duplicate of CVE-2018-4300. Notes: All CVE users should reference CVE-2018-4300 instead of this candidate. All references...

1 affected package

cups

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cups Fixed
Show less packages

CVE-2018-6553

Medium priority
Fixed

The CUPS AppArmor profile incorrectly confined the dnssd backend due to use of hard links. A local attacker could possibly use this issue to escape confinement. This flaw affects versions prior to 2.2.7-1ubuntu2.1 in Ubuntu 18.04...

1 affected package

cups

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cups Fixed
Show less packages

CVE-2018-4183

Medium priority
Not affected

In macOS High Sierra before 10.13.5, an access issue was addressed with additional sandbox restrictions.

1 affected package

cups

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cups Not affected
Show less packages

CVE-2018-4182

Medium priority
Not affected

In macOS High Sierra before 10.13.5, an access issue was addressed with additional sandbox restrictions on CUPS.

1 affected package

cups

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cups Not affected
Show less packages

CVE-2018-4181

Medium priority
Fixed

In macOS High Sierra before 10.13.5, an issue existed in CUPS. This issue was addressed with improved access restrictions.

1 affected package

cups

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
cups Fixed
Show less packages