Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2004-1270
Description:lppasswd in CUPS 1.1.22, when run in environments that do not ensure that file descriptors 0, 1, and 2 are open when lppasswd is called, does not verify that the passwd.new file is different from STDERR, which allows local users to control output to passwd.new via certain user input that triggers an error message.
Test IDs: 1.3.6.1.4.1.25623.1.0.52231   1.3.6.1.4.1.25623.1.0.51185   1.3.6.1.4.1.25623.1.0.51644  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2004-1270
http://www.gentoo.org/security/en/glsa/glsa-200412-25.xml
http://www.mandriva.com/security/advisories?name=MDKSA-2005:008
http://tigger.uic.edu/~jlongs2/holes/cups2.txt
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11507
RedHat Security Advisories: RHSA-2005:013
http://www.redhat.com/support/errata/RHSA-2005-013.html
RedHat Security Advisories: RHSA-2005:053
http://www.redhat.com/support/errata/RHSA-2005-053.html
https://usn.ubuntu.com/50-1/
XForce ISS Database: cups-lppasswd-passwd-modify(18609)
https://exchange.xforce.ibmcloud.com/vulnerabilities/18609




© 1998-2025 E-Soft Inc. All rights reserved.