CUPS < 1.4.7 'gif_read_lzw' Buffer Overflow
Medium Nessus Plugin ID 56007
SynopsisThe remote print service is affected by a buffer overflow vulnerability.
DescriptionAccording to its banner, the version of CUPS installed on the remote host is earlier than 1.4.7.
There is a boundary error in the function 'gif_read_lzw' in the file 'filter/image-gif.c' that can allow an attacker to cause a heap-based buffer overflow via specially crafted gif images.
SolutionUpgrade to CUPS version 1.4.7 or later.