CVE Database
/

CVE-2009-3553

Back to search

CVE-2009-3553

Published: Nov 20, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS 1.3.7 and 1.3.10 allows remote attackers to cause a denial of service (daemon crash or hang) via a client disconnection during listing of a large number of print jobs, related to improperly maintaining a reference count. NOTE: some of these details are obtained from third party information.

VendorProductVersions

n/a

n/a

affected
n/a

References

37364
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:11183
vdb-entry
signature
x_refsource_OVAL
USN-906-1
vendor-advisory
x_refsource_UBUNTU
RHSA-2009:1595
vendor-advisory
x_refsource_REDHAT
37048
vdb-entry
x_refsource_BID
DSA-2176
vendor-advisory
x_refsource_DEBIAN
APPLE-SA-2010-01-19-1
vendor-advisory
x_refsource_APPLE
GLSA-201207-10
vendor-advisory
x_refsource_GENTOO
ADV-2011-0535
vdb-entry
x_refsource_VUPEN
37360
third-party-advisory
x_refsource_SECUNIA
MDVSA-2010:073
vendor-advisory
x_refsource_MANDRIVA
FEDORA-2009-12652
vendor-advisory
x_refsource_FEDORA
43521
third-party-advisory
x_refsource_SECUNIA
38241
third-party-advisory
x_refsource_SECUNIA
275230
vendor-advisory
x_refsource_SUNALERT
ADV-2010-0173
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now