Oval Definition:oval:org.mitre.oval:tst:39827
Comment:cups-devel is earlier than 1:1.3.7-11.el5_4.6
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:14076
State:oval:org.mitre.oval:ste:11059
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:11216
V
Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS before 1.4.4, when kqueue or epoll is used, allows remote attackers to cause a denial of service (daemon crash or hang) via a client disconnection during listing of a large number of print jobs, related to improperly maintaining a reference count. NOTE: some of these details are obtained from third party information. NOTE: this vulnerability exists because of an incomplete fix for CVE-2009-3553.
2013-04-29
BACK