Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The is_path_absolute function in scheduler/client.c for the daemon in CUPS before 1.1.23 allows remote attackers to cause a denial of service (CPU consumption by tight loop) via a "..\.." URL in an HTTP request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Easy CUPS HTTP GET拒绝服务漏洞
Vulnerability Description
Common Unix Printing System(CUPS)是一款通用Unix打印系统,是Unix环境下的跨平台打印解决方案,基于Internet打印协议,提供大多数PostScript和raster打印机服务。 CUPS 1.1.23之前版本的scheduler/client.c后台程序中有is_path_absolute函数。远程攻击者可以通过HTTP请求中的"..\.." URL引起拒绝服务攻击(通过固定循环消耗CPU)。
CVSS Information
N/A
Vulnerability Type
N/A