CVE-2008-5183: Null Pointer Dereference
cupsd in CUPS 1.3.9 and earlier allows local users, and possibly remote attackers, to cause a denial of service (daemon crash) by adding a large number of RSS Subscriptions, which triggers a NULL pointer dereference. NOTE: this issue can be triggered remotely by leveraging CVE-2008-5184.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5183?
CVE-2008-5183 has been categorized with a severity that can lead to denial of service.
How do I fix CVE-2008-5183?
To mitigate CVE-2008-5183, update to a version of CUPS that is not affected, specifically versions later than 1.3.9.
Who is affected by CVE-2008-5183?
CVE-2008-5183 affects local users and potentially remote attackers on CUPS versions 1.3.9 and earlier.
What does CVE-2008-5183 exploit?
CVE-2008-5183 exploits a NULL pointer dereference caused by the addition of a large number of RSS subscriptions.
Can CVE-2008-5183 be exploited remotely?
Yes, CVE-2008-5183 can be triggered remotely by leveraging an additional vulnerability, identified as CVE-2008-5184.