CVE-2008-0597
Publication date 26 February 2008
Last updated 24 July 2024
Ubuntu priority
Use-after-free vulnerability in CUPS before 1.1.22, and possibly other versions, allows remote attackers to cause a denial of service (crash) via crafted IPP packets.
Status
Package | Ubuntu Release | Status |
---|---|---|
cupsys | 7.10 gutsy |
Not affected
|
7.04 feisty |
Not affected
|
|
6.10 edgy |
Not affected
|
|
6.06 LTS dapper |
Not affected
|
Notes
jdstrand
patched code doesn’t exist in 1.2. Also 1.2 and higher uses cupsArrayRestore(), which uses similar checks as the patched code
Patch details
Package | Patch details |
---|---|
cupsys |