Oval Definition:oval:org.mitre.oval:def:7234
Revision Date:2014-06-23Version:20
Title:DSA-2007 cups -- format string vulnerability
Description:Ronald Volgers discovered that the lppasswd component of the cups suite, the Common UNIX Printing System, is vulnerable to format string attacks due to insecure use of the LOCALEDIR environment variable. An attacker can abuse this behaviour to execute arbitrary code via crafted localization files and triggering calls to _cupsLangprintf. This works as the lppasswd binary happens to be installed with setuid 0 permissions.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2010-0393
DSA-2007
Platform(s):Debian GNU/Linux 5.0
Product(s):cups
Definition Synopsis
  • Debian GNU/Linux 5.0 is installed
  • AND Architecture section
  • Architecture independent section
  • Installed architecture is all
  • AND Packages section
  • cupsys-bsd is earlier than 1.3.8-1+lenny8
  • OR cups-common is earlier than 1.3.8-1+lenny8
  • OR libcupsys2-dev is earlier than 1.3.8-1+lenny8
  • OR cupsys-common is earlier than 1.3.8-1+lenny8
  • OR cupsys-client is earlier than 1.3.8-1+lenny8
  • OR cupsys-dbg is earlier than 1.3.8-1+lenny8
  • OR cupsys is earlier than 1.3.8-1+lenny8
  • OR libcupsys2 is earlier than 1.3.8-1+lenny8
  • OR Architecture dependent section
  • Supported architectures section
  • Installed architecture is s390
  • OR Installed architecture is amd64
  • OR Installed architecture is sparc
  • OR Installed architecture is arm
  • OR Installed architecture is i386
  • OR Installed architecture is armel
  • OR Installed architecture is ia64
  • OR Installed architecture is alpha
  • OR Installed architecture is powerpc
  • OR Installed architecture is mipsel
  • OR Installed architecture is hppa
  • AND Packages section
  • libcups2-dev is earlier than 1.3.8-1+lenny8
  • OR cups-bsd is earlier than 1.3.8-1+lenny8
  • OR libcupsimage2-dev is earlier than 1.3.8-1+lenny8
  • OR libcupsimage2 is earlier than 1.3.8-1+lenny8
  • OR cups-client is earlier than 1.3.8-1+lenny8
  • OR libcups2 is earlier than 1.3.8-1+lenny8
  • OR cups-dbg is earlier than 1.3.8-1+lenny8
  • OR cups is earlier than 1.3.8-1+lenny8
  • BACK