CVE-2010-0542

CUPS < 1.4.4 - Remote Code Execution via Crafted File in Text Filter Subsystem

Title source: llm
STIX 2.1

Description

The _WriteProlog function in texttops.c in texttops in the Text Filter subsystem in CUPS before 1.4.4 does not check the return values of certain calloc calls, which allows remote attackers to cause a denial of service (NULL pointer dereference or heap memory corruption) or possibly execute arbitrary code via a crafted file.

References (14)

Core 14
Core References
Vendor Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDVSA-2010:234
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/40943
Patch x_refsource_confirm
http://cups.org/articles.php?L596
Vendor Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDVSA-2010:232
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2011/dsa-2176
Third Party Advisory vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-201207-10.xml
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2011/0535
Various Sources x_refsource_confirm
http://cups.org/str.php?L3516
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/43521
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10365
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1024121

Scores

EPSS 0.0413
EPSS Percentile 89.8%

Details

CWE
CWE-264
Status published
Products (32)
apple/cups 1.1
apple/cups 1.1.1
apple/cups 1.1.2
apple/cups 1.1.3
apple/cups 1.1.4
apple/cups 1.1.5
apple/cups 1.1.5-1
apple/cups 1.1.5-2
apple/cups 1.1.6
apple/cups 1.1.6-1
... and 22 more
Published Jun 21, 2010
Tracked Since Feb 18, 2026