CVE-2007-5849
EPSS 34.6%cupsys
Published: 12/19/2007Modified: 4/28/2026
Also known as:DEBIAN-CVE-2007-5849
Description
Integer underflow in the asn1_get_string function in the SNMP back end (backend/snmp.c) for CUPS 1.2 through 1.3.4 allows remote attackers to execute arbitrary code via a crafted SNMP response that triggers a stack-based buffer overflow.
Affected packages (2)
- Debian/cupsfrom 0, < 1.3.5-1
- Debian/cupsysfrom 0, < 1.2.7-4etch2