APP: Apple CUPS IPP Use-after-free Memory Corruption

This signature detects attempts to exploit a known vulnerability against implementation of Internet Printing Protocol (IPP) of the Common Unix Printing System (CUPS). A successful attack can lead to arbitrary code execution.

Extended Description

CUPS server is prone to a remote memory-corruption vulnerability because it fails to properly parse Internet Printing Protocol (IPP) packets. An attacker can exploit this issue to execute arbitrary code within the context of the affected application. Failed attacks may cause a denial-of-service condition. CUPS versions prior to 1.3.7-18 are vulnerable.

Affected Products

Apple mac_os_x

References

BugTraq: 44530

CVE: CVE-2010-2941

Short Name
APP:CUPS-IPP-RCE
Severity
Major
Recommended
False
Recommended Action
Drop
Category
APP
Keywords
Apple CUPS CVE-2010-2941 Corruption IPP Memory Use-after-free bid:44530
Release Date
01/09/2013
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
Port
TCP/631
False Positive
Unknown
Vendors

Red_hat

Suse

Apple

Gentoo

Sun

Avaya

Easy_software_products

Slackware

Ubuntu

Mandriva

Debian

CVSS Score

7.9

Found a potential security threat?