PublicDate: 2007-10-31 22:46:00 UTC Candidate: CVE-2007-4351 References: https://ubuntu.com/security/notices/USN-539-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-4351 Description: Off-by-one error in the ippReadIO function in cups/ipp.c in CUPS 1.3.3 allows remote attackers to cause a denial of service (crash) via a crafted (1) textWithLanguage or (2) nameWithLanguage Internet Printing Protocol (IPP) tag, leading to a stack-based buffer overflow. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: kees CVSS: upstream_cupsys: released (1.3.4) Tags_cups_gutsy: apparmor dapper_cupsys: released (1.2.2-0ubuntu0.6.06.4) edgy_cupsys: released (1.2.4-2ubuntu3.1) feisty_cupsys: released (1.2.8-0ubuntu8.1) gutsy_cupsys: released (1.3.2-1ubuntu7.1) devel_cupsys: not-affected