CVE-2008-0596
cups: memory leak handling IPP browse requests
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Memory leak in CUPS before 1.1.22, and possibly other versions, allows remote attackers to cause a denial of service (memory consumption and daemon crash) via a large number of requests to add and remove shared printers.
Fuga de memoria en CUPS versiones anteriores a 1.1.22 y posiblemente otras versiones, permite a atacantes remotos provocar una denegación de servicio (consumo de memoria y caída del demonio) a través de un gran número de peticiones para añadir y eliminar impresoras compartidas.
Dave Camp at Critical Path Software discovered a buffer overflow in CUPS 1.1.23 and earlier could allow local admin users to execute arbitrary code via a crafted URI to the CUPS service. The Red Hat Security Team also found two flaws in CUPS 1.1.x where a malicious user on the local subnet could send a set of carefully crafted IPP packets to the UDP port in such a way as to cause CUPS to crash or consume memory and lead to a CUPS crash. Finally, another flaw was found in how CUPS handled the addition and removal of remote printers via IPP that could allow a remote attacker to send a malicious IPP packet to the UDP port causing CUPS to crash.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2008-02-05 CVE Reserved
- 2008-02-26 CVE Published
- 2024-08-07 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-399: Resource Management Errors
- CWE-401: Missing Release of Memory after Effective Lifetime
CAPEC
References (23)
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.17 Search vendor "Easy Software Products" for product "Cups" and version "1.1.17" | - |
Affected
| in | Redhat Search vendor "Redhat" | Desktop Search vendor "Redhat" for product "Desktop" | 3.0 Search vendor "Redhat" for product "Desktop" and version "3.0" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.17 Search vendor "Easy Software Products" for product "Cups" and version "1.1.17" | - |
Affected
| in | Redhat Search vendor "Redhat" | Desktop Search vendor "Redhat" for product "Desktop" | 4.0 Search vendor "Redhat" for product "Desktop" and version "4.0" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.17 Search vendor "Easy Software Products" for product "Cups" and version "1.1.17" | - |
Affected
| in | Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | as_3 Search vendor "Redhat" for product "Enterprise Linux" and version "as_3" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.17 Search vendor "Easy Software Products" for product "Cups" and version "1.1.17" | - |
Affected
| in | Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | as_4 Search vendor "Redhat" for product "Enterprise Linux" and version "as_4" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.17 Search vendor "Easy Software Products" for product "Cups" and version "1.1.17" | - |
Affected
| in | Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | es_3 Search vendor "Redhat" for product "Enterprise Linux" and version "es_3" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.17 Search vendor "Easy Software Products" for product "Cups" and version "1.1.17" | - |
Affected
| in | Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | es_4 Search vendor "Redhat" for product "Enterprise Linux" and version "es_4" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.17 Search vendor "Easy Software Products" for product "Cups" and version "1.1.17" | - |
Affected
| in | Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | ws_3 Search vendor "Redhat" for product "Enterprise Linux" and version "ws_3" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.17 Search vendor "Easy Software Products" for product "Cups" and version "1.1.17" | - |
Affected
| in | Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | ws_4 Search vendor "Redhat" for product "Enterprise Linux" and version "ws_4" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.22 Search vendor "Easy Software Products" for product "Cups" and version "1.1.22" | - |
Affected
| in | Redhat Search vendor "Redhat" | Desktop Search vendor "Redhat" for product "Desktop" | 3.0 Search vendor "Redhat" for product "Desktop" and version "3.0" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.22 Search vendor "Easy Software Products" for product "Cups" and version "1.1.22" | - |
Affected
| in | Redhat Search vendor "Redhat" | Desktop Search vendor "Redhat" for product "Desktop" | 4.0 Search vendor "Redhat" for product "Desktop" and version "4.0" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.22 Search vendor "Easy Software Products" for product "Cups" and version "1.1.22" | - |
Affected
| in | Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | as_3 Search vendor "Redhat" for product "Enterprise Linux" and version "as_3" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.22 Search vendor "Easy Software Products" for product "Cups" and version "1.1.22" | - |
Affected
| in | Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | as_4 Search vendor "Redhat" for product "Enterprise Linux" and version "as_4" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.22 Search vendor "Easy Software Products" for product "Cups" and version "1.1.22" | - |
Affected
| in | Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | es_3 Search vendor "Redhat" for product "Enterprise Linux" and version "es_3" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.22 Search vendor "Easy Software Products" for product "Cups" and version "1.1.22" | - |
Affected
| in | Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | es_4 Search vendor "Redhat" for product "Enterprise Linux" and version "es_4" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.22 Search vendor "Easy Software Products" for product "Cups" and version "1.1.22" | - |
Affected
| in | Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | ws_3 Search vendor "Redhat" for product "Enterprise Linux" and version "ws_3" | - |
Safe
|
Easy Software Products Search vendor "Easy Software Products" | Cups Search vendor "Easy Software Products" for product "Cups" | 1.1.22 Search vendor "Easy Software Products" for product "Cups" and version "1.1.22" | - |
Affected
| in | Redhat Search vendor "Redhat" | Enterprise Linux Search vendor "Redhat" for product "Enterprise Linux" | ws_4 Search vendor "Redhat" for product "Enterprise Linux" and version "ws_4" | - |
Safe
|