
CVE-2004-1267 – CUPS 1.1.x - '.HPGL' File Processor Buffer Overflow
https://notcve.org/view.php?id=CVE-2004-1267
22 Dec 2004 — Buffer overflow in the ParseCommand function in hpgl-input.c in the hpgltops program for CUPS 1.1.22 allows remote attackers to execute arbitrary code via a crafted HPGL file. Desbordamiento de búfer en la función ParseCommand en hpgl-input.c del programa hpgltops de CUPS 1.1.22 permite a atacantes remotos ejecutar código arbitrario medianet un fichero HPGL artesanal. • https://www.exploit-db.com/exploits/24977 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2004-1269 – Easy Software Products LPPassWd 1.1.22 - Resource Limit Denial of Service
https://notcve.org/view.php?id=CVE-2004-1269
22 Dec 2004 — lppasswd in CUPS 1.1.22 does not remove the passwd.new file if it encounters a file-size resource limit while writing to passwd.new, which causes subsequent invocations of lppasswd to fail. • https://www.exploit-db.com/exploits/25012 •

CVE-2004-1268
https://notcve.org/view.php?id=CVE-2004-1268
22 Dec 2004 — lppasswd in CUPS 1.1.22 ignores write errors when modifying the CUPS passwd file, which allows local users to corrupt the file by filling the associated file system and triggering the write errors. • http://tigger.uic.edu/~jlongs2/holes/cups2.txt •

CVE-2004-0926
https://notcve.org/view.php?id=CVE-2004-0926
28 Oct 2004 — Heap-based buffer overflow in Apple QuickTime on Mac OS 10.2.8 through 10.3.5 may allow remote attackers to execute arbitrary code via a certain BMP image. • http://lists.apple.com/archives/security-announce/2004/Oct/msg00000.html •

CVE-2004-0927
https://notcve.org/view.php?id=CVE-2004-0927
28 Oct 2004 — ServerAdmin in Mac OS X 10.2.8 through 10.3.5 uses the same example self-signed certificate on each system, which allows remote attackers to decrypt sessions. • http://lists.apple.com/archives/security-announce/2004/Oct/msg00000.html •

CVE-2004-0924
https://notcve.org/view.php?id=CVE-2004-0924
28 Oct 2004 — NetInfo Manager on Mac OS X 10.3.x through 10.3.5, after an initial root login, reports the root account as being disabled, even when it has not. • http://lists.apple.com/archives/security-announce/2004/Oct/msg00000.html •

CVE-2004-0923
https://notcve.org/view.php?id=CVE-2004-0923
26 Oct 2004 — CUPS 1.1.20 and earlier records authentication information for a device URI in the error_log file, which allows local users to obtain user names and passwords. • http://lists.apple.com/archives/security-announce/2004/Oct/msg00000.html •

CVE-2004-0889
https://notcve.org/view.php?id=CVE-2004-0889
26 Oct 2004 — Multiple integer overflows in xpdf 3.0, and other packages that use xpdf code such as CUPS, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, a different set of vulnerabilities than those identified by CVE-2004-0888. • http://marc.info/?l=bugtraq&m=109880927526773&w=2 •

CVE-2004-0888
https://notcve.org/view.php?id=CVE-2004-0888
26 Oct 2004 — Multiple integer overflows in xpdf 2.0 and 3.0, and other packages that use xpdf code such as CUPS, gpdf, and kdegraphics, allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, a different set of vulnerabilities than those identified by CVE-2004-0889. • http://distro.conectiva.com.br/atualizacoes/index.php?id=a&anuncio=000886 •

CVE-2004-0558 – CUPS 1.1.x - UDP Packet Remote Denial of Service
https://notcve.org/view.php?id=CVE-2004-0558
17 Sep 2004 — The Internet Printing Protocol (IPP) implementation in CUPS before 1.1.21 allows remote attackers to cause a denial of service (service hang) via a certain UDP packet to the IPP port. La implementación del Protocolo de Impresión de Internet (IPP) en CUPS anteriores a 1.1.21 permite a atacantes remotos causar una denegación de servicio (cuelgue del servicio) mediante cierto paquete UDP al puerto IPP. • https://www.exploit-db.com/exploits/24599 •