Files
cve/2009/CVE-2009-0949.md
2025-09-29 21:09:30 +02:00

900 B

CVE-2009-0949

Description

The ippReadIO function in cups/ipp.c in cupsd in CUPS before 1.3.10 does not properly initialize memory for IPP request packets, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a scheduler request with two consecutive IPP_TAG_UNSUPPORTED tags.

POC

Reference

Github

No PoCs found on GitHub currently.