CVE-2004-1269: Medium severity Easy Software Products Cups vulnerability
Published Dec 22, 2004
·Updated
lppasswd in CUPS 1.1.22 does not remove the passwd.new file if it encounters a file-size resource limit while writing to passwd.new, which causes subsequent invocations of lppasswd to fail.
Affected Software
24 affected components
Easy Software Products Cups=1.0.4
Easy Software Products Cups=1.0.4_8
Easy Software Products Cups=1.1.1
Easy Software Products Cups=1.1.4
Easy Software Products Cups=1.1.4_2
Easy Software Products Cups=1.1.4_3
Easy Software Products Cups=1.1.4_5
Easy Software Products Cups=1.1.6
Easy Software Products Cups=1.1.7
Easy Software Products Cups=1.1.10
Easy Software Products Cups=1.1.12
Easy Software Products Cups=1.1.13
Easy Software Products Cups=1.1.14
Easy Software Products Cups=1.1.15
Easy Software Products Cups=1.1.16
Easy Software Products Cups=1.1.17
Easy Software Products Cups=1.1.18
Easy Software Products Cups=1.1.19
Easy Software Products Cups=1.1.19_rc5
Easy Software Products Cups=1.1.20
Easy Software Products Cups=1.1.21
Easy Software Products Cups=1.1.22_rc1
redhat Fedora Core=core_2.0
redhat Fedora Core=core_3.0
Event History
Dec 22, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1269?
CVE-2004-1269 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2004-1269?
To fix CVE-2004-1269, update CUPS to version 1.1.23 or later.
3
Which versions of CUPS are affected by CVE-2004-1269?
CVE-2004-1269 affects CUPS versions from 1.0.4 to 1.1.22.
4
What are the implications of CVE-2004-1269?
CVE-2004-1269 can cause subsequent invocations of lppasswd to fail due to an issue with file size resource limits.
5
Is CVE-2004-1269 a remote or local vulnerability?
CVE-2004-1269 is primarily considered a local vulnerability affecting authenticated users.