First published: Tue Mar 18 2008(Updated: )
Heap-based buffer overflow in the cgiCompileSearch function in CUPS 1.3.5, and other versions including the version bundled with Apple Mac OS X 10.5.2, when printer sharing is enabled, allows remote attackers to execute arbitrary code via crafted search expressions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Apple iOS and macOS | =10.5.2 | |
Apple macOS Server | =10.5.2 | |
CUPS libraries | =1.3.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-0047 is considered a critical vulnerability due to its potential to allow remote code execution.
To fix CVE-2008-0047, you should update CUPS to the latest version that addresses this vulnerability.
CVE-2008-0047 affects CUPS version 1.3.5 and earlier, as well as the version bundled with Apple Mac OS X 10.5.2.
CVE-2008-0047 is caused by a heap-based buffer overflow in the cgiCompileSearch function when printer sharing is enabled.
Yes, CVE-2008-0047 can be exploited by remote attackers through crafted search expressions.