CVE-2007-4351

Description

From CVE.org

Off-by-one error in the ippReadIO function in cups/ipp.c in CUPS 1.3.3 allows remote attackers to cause a denial of service (crash) via a crafted (1) textWithLanguage or (2) nameWithLanguage Internet Printing Protocol (IPP) tag, leading to a stack-based buffer overflow.

Statement

Vulnerable. This issue affected the CUPS packages in Red Hat Enterprise Linux 5.

This issue also affected the versions of CUPS packages in Red Hat Enterprise Linux 3 and 4, but exploitation would only lead to a possible denial of service.

Acknowledgements

Red Hat would like to thank Alin Rad Pop for reporting this issue.

Frequently Asked Questions

Want to get errata notifications? Sign up here.