Cybertrion Systems

[3/5] CUPS PNG Filter Integer Overflow Vulnerability

April 15th, 2008 by
[3/5] CUPS PNG Filter Integer Overflow Vulnerability

:Thomas Pollet has reported a vulnerability in CUPS, which potentially can be exploited by malicious people to compromise a vulnerable system.The vulnerability is caused due to two integer overflow errors in filter/image-png.c when processing PNG files. These can be exploited to cause a heap-based buffer overflow via overly large width and height PNG fields.Successful exploitation may allow execution of arbitrary code.The vulnerability is reported in version 1.3.7. Other versions may also be affected.Solution:Fixed in the SVN repository.Restrict access to trusted users only.Provided and/or discovered by:Thomas PolletOriginal Advisory:http://www.cups.org/str.php?L2790

Original post by kapil

[3/5] CUPS PNG Filter Integer Overflow Vulnerability

Related Articles:
  • [3/5] Fedora update for cups
  • [2/5] Alternate pdftops Filter for CUPS Insecure Temporary Files
  • [3/5] Slackware update for cups
  • [3/5] SUSE update for cups
  • [3/5] Mandriva update for cups


  • Posted in Advisories - Exploits | | [3/5] CUPS PNG Filter Integer Overflow Vulnerability

    << [2/5] OSI Affiliate “login.php” Cross-Site Scripting Vulnerabilities | [2/5] Gentoo update for asterisk >>