Total vulnerabilities in the database
Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS before 1.4.4, when kqueue or epoll is used, allows remote attackers to cause a denial of service (daemon crash or hang) via a client disconnection during listing of a large number of print jobs, related to improperly maintaining a reference count. NOTE: some of these details are obtained from third party information. NOTE: this vulnerability exists because of an incomplete fix for CVE-2009-3553.
Software | From | Fixed in |
---|---|---|
apple / mac_os_x_server | 10.6.0 | 10.6.4 |
apple / mac_os_x | 10.6.0 | 10.6.4 |
apple / mac_os_x_server | - | 10.5.8 |
apple / mac_os_x | - | 10.5.8 |
apple / cups | - | 1.4.4 |
fedoraproject / fedora | 11 | 11.x |
canonical / ubuntu_linux | 9.04 | 9.04.x |
canonical / ubuntu_linux | 8.10 | 8.10.x |
canonical / ubuntu_linux | 9.10 | 9.10.x |
canonical / ubuntu_linux | 8.04 | 8.04.x |
canonical / ubuntu_linux | 6.06 | 6.06.x |
redhat / enterprise_linux_server | 5.0 | 5.0.x |
redhat / enterprise_linux_workstation | 5.0 | 5.0.x |
redhat / enterprise_linux | 5.0 | 5.0.x |
redhat / enterprise_linux_desktop | 5.0 | 5.0.x |
redhat / enterprise_linux_eus | 5.4 | 5.4.x |