Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> SuSE Local Security Checks >> SUSE-SA:2003:028: cups


Vulnerability Assessment Details

SUSE-SA:2003:028: cups

Vulnerability Assessment Summary
Check for the version of the cups package

Detailed Explanation for this Vulnerability Assessment

The remote host is missing the patch for the advisory SUSE-SA:2003:028 (cups).


The well documented Common Unix Printing System (CUPS) was found vulnerable
to a remote Denial of Service attack. The CUPS daemon will stop serving
clients if the second carriage return in a request is not sent to
complete the header.
Since the vulnerability occurs before any authorization or address
verification there is no other workaround than shutting down the
CUPS server.

To be sure the update takes effect you have to restart the CUPS daemon
by executing the following command as root:

'rccups try-restart'

Please download the update package for your distribution and verify its
integrity by the methods listed in section 3) of this announcement.
Then, install the package using the command 'rpm -Fhv file.rpm' to apply
the update.

Solution : http://www.suse.de/security/2003_028.html
Network Security Threat Level: Medium

Networks Security ID:

Vulnerability Assessment Copyright: This script is Copyright (C) 2004 Tenable Network Security

Cables, Connectors

HP ProLiant BL490c Gen6 INTEL XEON E5540 2.53Ghz, 8GB Blade Server 498357-B21
$95.0
HP ProLiant BL490c Gen6 INTEL XEON E5540 2.53Ghz, 8GB Blade Server 498357-B21 pictureDELL POWEREDGE M820 TWO E5-4603 2.0GHZ 64GB 600GB 10K SAS H710
$2239.0
DELL POWEREDGE M820 TWO E5-4603 2.0GHZ 64GB 600GB 10K SAS H710 pictureHPE PROLIANT BL460C G9 GEN9 SERVER E5-2630V3 2.4GHZ 64GB 2 X 300GB 10K SAS
$3489.0
HPE PROLIANT BL460C G9 GEN9 SERVER E5-2630V3 2.4GHZ 64GB 2 X 300GB 10K SAS pictureIBM HX5 BLADECENTER SERVER TWO E7530 1.86GHZ 96GB NO HDD
$1599.0
IBM HX5 BLADECENTER SERVER TWO E7530 1.86GHZ 96GB NO HDD picture


Discussions

No Discussions have been posted on this vulnerability.