Integer underflow in the asn1_get_string function in the SNMP back end (backend/snmp.c) for CUPS 1.2 up to and including 1.3.4 allows remote malicious users to execute arbitrary code via a crafted SNMP response that triggers a stack-based buffer overflow.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
easy_software_products cups 1.3.3 |
||
easy_software_products cups 1.2.10 |
||
easy_software_products cups 1.2.12 |
||
easy_software_products cups 1.2.4 |
||
easy_software_products cups 1.2.9 |