CVE-2009-0949 vulnerability in Canonical and Other Products
Published on June 9, 2009
The ippReadIO function in cups/ipp.c in cupsd in CUPS before 1.3.10 does not properly initialize memory for IPP request packets, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a scheduler request with two consecutive IPP_TAG_UNSUPPORTED tags.
Products Associated with CVE-2009-0949
You can be notified by email with stack.watch whenever vulnerabilities like CVE-2009-0949 are published in these products:
Exploit Probability
EPSS
20.57%
Percentile
95.46%
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.