CVE-2010-0542 Information

Description

The _WriteProlog function in texttops.c in texttops in the Text Filter subsystem in CUPS before 1.4.4 does not check the return values of certain calloc calls which allows remote attackers to cause a denial of service (NULL pointer dereference or heap memory corruption) or possibly execute arbitrary code via a crafted file.

Reference

http://cups.org/articles.php?L596 http://cups.org/str.php?L3516 http://cups.org/strfiles/3516/str3516.patch http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00000.html http://secunia.com/advisories/43521 http://security.gentoo.org/glsa/glsa-201207-10.xml http://securitytracker.com/id?1024121 http://www.debian.org/security/2011/dsa-2176 http://www.mandriva.com/security/advisories?name=MDVSA-2010:232 http://www.mandriva.com/security/advisories?name=MDVSA-2010:234 http://www.securityfocus.com/bid/40943 http://www.vupen.com/english/advisories/2011/0535 https://bugzilla.redhat.com/show_bug.cgi?id=587746 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A10365

Share on: