CUPS.IPP.TAG.UNSUPPORTED.DoS

Release DateJun 23, 2009
SeverityMedium
ImpactDenial of service
DescriptionThis indicates an attack attempt against a denial-of-service vulnerability in Apple CUPS.

The vulnerability is caused by an error when the vulnerable software handles malformed attributes. It allows a remote attacker to cause a denial of service via sending a crafted IPP request.
Affected ProductsCUPS 1.1.17
CUPS 1.1.23
CUPS 1.3.6
CUPS 1.3.7
CUPS 1.3.8
CUPS 1.3.9
Recommended ActionsUpgrade to the latest version CUPS 1.3.10
Common Vulnerabilities and Exposures (CVE)http://cve.mitre.org/cgi-bin/cvename.cgi?name=2009-0949
Reference/shttp://www.securityfocus.com/bid/35169 (BugTraq)
Reference: VID-17471