CVE-2002-1383: Integer Overflow
Multiple integer overflows in Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 allow remote attackers to execute arbitrary code via (1) the CUPSd HTTP interface, as demonstrated by vanilla-coke, and (2) the image handling code in CUPS filters, as demonstrated by mksun.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1383?
CVE-2002-1383 is classified as a critical vulnerability due to its ability to allow remote code execution.
How do I fix CVE-2002-1383?
To remediate CVE-2002-1383, upgrade CUPS to a version newer than 1.1.17 that has the integer overflow vulnerabilities patched.
What versions of CUPS are affected by CVE-2002-1383?
CVE-2002-1383 affects CUPS versions from 1.1.4 to 1.1.17, along with earlier versions like 1.1.1 and 1.0.4.
Can CVE-2002-1383 be exploited remotely?
Yes, CVE-2002-1383 can be exploited remotely via the CUPSd HTTP interface and image handling code in CUPS filters.
What are the potential impacts of CVE-2002-1383?
Exploitation of CVE-2002-1383 could lead to arbitrary code execution, which may compromise the affected system.