CVE-2004-0923
EPSS 0.10%cupsys - unsanitised input
發布日:2005/1/27修改日:2026/4/28
描述
CUPS 1.1.20 and earlier records authentication information for a device URI in the error_log file, which allows local users to obtain user names and passwords.
受影響套件(2)
- Debian/cupsfrom 0, < 1.1.20final+rc1-9
- Debian/cupsysfrom 0, < 1.1.14-5woody7