CVE-2008-5286

Integer overflow in the _cupsImageReadPNG function in CUPS 1.1.17 through 1.3.9 allows remote attackers to execute arbitrary code via a PNG image with a large height value, which bypasses a validation check and triggers a buffer overflow.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 92%
VendorProductVersion
applecups
1.1.17
applecups
1.1.18
applecups
1.1.19
applecups
1.1.19:rc1
applecups
1.1.19:rc2
applecups
1.1.19:rc3
applecups
1.1.19:rc4
applecups
1.1.19:rc5
applecups
1.1.20
applecups
1.1.20:rc1
applecups
1.1.20:rc2
applecups
1.1.20:rc3
applecups
1.1.20:rc4
applecups
1.1.20:rc5
applecups
1.1.20:rc6
applecups
1.1.21
applecups
1.1.21:rc1
applecups
1.1.21:rc2
applecups
1.1.22
applecups
1.1.22:rc1
applecups
1.1.22:rc2
applecups
1.1.23
applecups
1.1.23:rc1
applecups
1.2:b1
applecups
1.2:b2
applecups
1.2:rc1
applecups
1.2:rc2
applecups
1.2:rc3
applecups
1.2.0
applecups
1.2.1
applecups
1.2.2
applecups
1.2.3
applecups
1.2.4
applecups
1.2.5
applecups
1.2.6
applecups
1.2.7
applecups
1.2.8
applecups
1.2.9
applecups
1.2.10
applecups
1.2.11
applecups
1.2.12
applecups
1.3:b1
applecups
1.3:rc1
applecups
1.3:rc2
applecups
1.3.0
applecups
1.3.1
applecups
1.3.2
applecups
1.3.3
applecups
1.3.4
applecups
1.3.5
applecups
1.3.6
applecups
1.3.7
applecups
1.3.8
applecups
1.3.9
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
cups
bullseye
2.3.3op2-3+deb11u8
fixed
bullseye (security)
2.3.3op2-3+deb11u9
fixed
bookworm
2.4.2-3+deb12u7
fixed
bookworm (security)
2.4.2-3+deb12u8
fixed
sid
2.4.10-2
fixed
trixie
2.4.10-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
cups
intrepid
Fixed 1.3.9-2ubuntu6.1
released
hardy
dne
gutsy
dne
dapper
dne
cupsys
intrepid
dne
hardy
Fixed 1.3.7-1ubuntu3.3
released
gutsy
Fixed 1.3.2-1ubuntu7.9
released
dapper
Fixed 1.2.2-0ubuntu0.6.06.12
released
Common Weakness Enumeration
References