Home CVE Database CVE-2017-18248

CVE-2017-18248

Description

The add_job function in scheduler/ipp.c in CUPS before 2.2.6, when D-Bus support is enabled, can be crashed by remote attackers by sending print jobs with an invalid username, related to a D-Bus notification.

Priority: LOW
CVSS v3: 5.3
Publish Date: Mar 26, 2018
Related ID: --
CVSS v2: MEDIUM
Modified Date: Mar 26, 2018

Find out more about CVE-2017-18248 from the MITRE-CVE dictionary and NIST NVD


Products Affected

Login may be required to access defects or downloads.

Related Products

Product Name Status Defect Fixed Downloads
Linux 7 SCP Not Vulnerable -- -- --
Linux 7 CGP Not Vulnerable -- -- --

Comments

cups

Live chat
Online