PublicDate: 2008-04-04 00:44:00 UTC Candidate: CVE-2008-1373 References: http://www.cups.org/str.php?L2765 https://ubuntu.com/security/notices/USN-598-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1373 Description: Buffer overflow in the gif_read_lzw function in CUPS 1.3.6 allows remote attackers to have an unknown impact via a GIF file with a large code_size value, a similar issue to CVE-2006-4484. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: jdstrand CVSS: Patches_cupsys: vendor: https://rhn.redhat.com/errata/RHSA-2008-0192.html Tags_cupsys_gutsy: apparmor upstream_cupsys: needs-triage dapper_cupsys: released (1.2.2-0ubuntu0.6.06.8) edgy_cupsys: released (1.2.4-2ubuntu3.3) feisty_cupsys: released (1.2.8-0ubuntu8.3) gutsy_cupsys: released (1.3.2-1ubuntu7.6) devel_cupsys: released (1.3.7-1ubuntu1)