Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2005-2874
Description:The is_path_absolute function in scheduler/client.c for the daemon in CUPS before 1.1.23 allows remote attackers to cause a denial of service (CPU consumption by tight loop) via a "..\.." URL in an HTTP request.
Test IDs: 1.3.6.1.4.1.25623.1.0.55437   1.3.6.1.4.1.25623.1.0.55398   1.3.6.1.4.1.25623.1.0.52225  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-2874
1012811
http://securitytracker.com/id?1012811
FEDORA-2005-908
http://lwn.net/Alerts/152835/
RHSA-2005:772
http://www.redhat.com/support/errata/RHSA-2005-772.html
http://www.cups.org/relnotes.php#010123
http://www.cups.org/relnotes.php#010123
http://www.cups.org/str.php?L1042+P0+S-1+C0+I0+E0+Q1042
http://www.cups.org/str.php?L1042+P0+S-1+C0+I0+E0+Q1042
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=168072
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=168072
oval:org.mitre.oval:def:9774
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9774




© 1998-2025 E-Soft Inc. All rights reserved.