CVE-2010-0542
N/A
N/A
Summary
The _WriteProlog function in texttops.c in texttops in the Text Filter subsystem in CUPS before 1.4.4 does not check the return values of certain calloc calls, which allows remote attackers to cause a denial of service (NULL pointer dereference or heap memory corruption) or possibly execute arbitrary code via a crafted file.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- https://bugzilla.redhat.com/show_bug.cgi?id=587746
- http://www.mandriva.com/security/advisories?name=MDVSA-2010:234
- http://www.securityfocus.com/bid/40943
- http://cups.org/articles.php?L596
- http://www.mandriva.com/security/advisories?name=MDVSA-2010:232
- http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00000.html
- http://www.debian.org/security/2011/dsa-2176
- http://security.gentoo.org/glsa/glsa-201207-10.xml
- http://cups.org/strfiles/3516/str3516.patch
- http://www.vupen.com/english/advisories/2011/0535
- http://cups.org/str.php?L3516
- http://secunia.com/advisories/43521
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10365
- http://securitytracker.com/id?1024121
References
- https://bugzilla.redhat.com/show_bug.cgi?id=587746
- http://www.mandriva.com/security/advisories?name=MDVSA-2010:234
- http://www.securityfocus.com/bid/40943
- http://cups.org/articles.php?L596
- http://www.mandriva.com/security/advisories?name=MDVSA-2010:232
- http://lists.opensuse.org/opensuse-security-announce/2010-12/msg00000.html
- http://www.debian.org/security/2011/dsa-2176
- http://security.gentoo.org/glsa/glsa-201207-10.xml
- http://cups.org/strfiles/3516/str3516.patch
- http://www.vupen.com/english/advisories/2011/0535
- http://cups.org/str.php?L3516
- http://secunia.com/advisories/43521
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10365
- http://securitytracker.com/id?1024121
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.