CVE-2010-0542

Source
https://nvd.nist.gov/vuln/detail/CVE-2010-0542
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2010-0542.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2010-0542
Related
Published
2010-06-21T16:30:01Z
Modified
2025-04-11T00:51:21Z
Downstream
Summary
[none]
Details

The _WriteProlog function in texttops.c in texttops in the Text Filter subsystem in CUPS before 1.4.4 does not check the return values of certain calloc calls, which allows remote attackers to cause a denial of service (NULL pointer dereference or heap memory corruption) or possibly execute arbitrary code via a crafted file.

References

Affected packages

Debian:11 / cups

Package

Name
cups
Purl
pkg:deb/debian/cups?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.4.4-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / cups

Package

Name
cups
Purl
pkg:deb/debian/cups?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.4.4-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / cups

Package

Name
cups
Purl
pkg:deb/debian/cups?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.4.4-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}