VDB
CVE-2002-1368
CVE-2002-1368
PUBLISHED
CVSS 7.5 HIGH
Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code by causing negative arguments to be fed into memcpy() calls via HTTP requests with (1) a negative Content-Length value or (2) a negative length in a chunked transfer encoding.
EPSS 15.47% · 96.5th percentile
Risk Scores
CVSS 2.0
7.5
EPSS Score
15.47%
96.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| easy_software_products | cups | 1.1.14, 1.0.4, 1.0.4_8 |
| apple | mac_os_x | 10.2.2, 10.2 |
| n/a | n/a | * |
Timeline
- Dec 20, 2002 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- May 26, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
References
- 7756 third-party-advisory
- 7907 third-party-advisory
- RHSA-2002:295 vendor-advisory
- CSSA-2003-004.0 vendor-advisory
- 6437 vdb
- 20021219 iDEFENSE Security Advisory 12.19.02: Multiple Security Vulnerabilities in Common Unix Printing System (CUPS) mailing-list
- https://nvd.nist.gov/vuln/detail/CVE-2002-1368 advisory
- http://archives.neohapsis.com/archives/vulnwatch/2002-q4/0117.html url
- http://secunia.com/advisories/7756 url
- http://secunia.com/advisories/7794 url
- http://secunia.com/advisories/7803 url
- http://secunia.com/advisories/7858 url
- http://secunia.com/advisories/7913 url
- http://secunia.com/advisories/8080 url
- http://secunia.com/advisories/9325 url
- http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000702 technical
- http://secunia.com/advisories/7843 technical
- http://secunia.com/advisories/7913/ technical
- http://secunia.com/advisories/8080/ technical
- http://secunia.com/advisories/9325/ technical
…and 5 more