CVE-2014-5031: Medium severity cups vulnerability
The web interface in CUPS before 2.0 does not check that files have world-readable permissions, which allows remote attackers to obtains sensitive information via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2014-5031?
CVE-2014-5031 is classified as a medium severity vulnerability due to its potential to expose sensitive information.
How do I fix CVE-2014-5031?
To fix CVE-2014-5031, update CUPS to version 2.0 or later which implements proper permissions checking.
What systems are affected by CVE-2014-5031?
CVE-2014-5031 affects CUPS versions prior to 2.0, particularly those installed on Apple and specific Ubuntu Linux distributions.
Can CVE-2014-5031 be exploited remotely?
Yes, CVE-2014-5031 can be exploited remotely if an attacker can access the web interface of the vulnerable CUPS installation.
What type of sensitive information can be exposed by CVE-2014-5031?
CVE-2014-5031 can potentially expose any files that have world-readable permissions, which may include confidential data.