CVE-2007-5849
EPSS 34.6%cupsys
發布日:2007/12/19修改日:2026/4/28
描述
Integer underflow in the asn1_get_string function in the SNMP back end (backend/snmp.c) for CUPS 1.2 through 1.3.4 allows remote attackers to execute arbitrary code via a crafted SNMP response that triggers a stack-based buffer overflow.
受影響套件(2)
- Debian/cupsfrom 0, < 1.3.5-1
- Debian/cupsysfrom 0, < 1.2.7-4etch2