Known Vulnerabilities for products from Easy Software Products

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Easy Software Products".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2008-1373 json Buffer overflow in the gif_read_lzw function in CUPS 1.3.6 allows remote attackers to have an unknown impact via a GIF file w... 5.8 - MEDIUM 2008-04-04 2018-10-11
CVE-2008-0597 json Use-after-free vulnerability in CUPS before 1.1.22, and possibly other versions, allows remote attackers to cause a denial of... 5 - MEDIUM 2008-02-26 2018-10-15
CVE-2008-0596 json Memory leak in CUPS before 1.1.22, and possibly other versions, allows remote attackers to cause a denial of service (memory ... 5 - MEDIUM 2008-02-26 2023-02-13
CVE-2007-5849 json Integer underflow in the asn1_get_string function in the SNMP back end (backend/snmp.c) for CUPS 1.2 through 1.3.4 allows rem... 9.3 - HIGH 2007-12-19 2017-07-29
CVE-2005-3626 json Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to ... Not Provided 2005-12-31 2025-04-03
CVE-2005-3625 json Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to ... Not Provided 2005-12-31 2025-04-03
CVE-2005-3624 json The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor,... Not Provided 2005-12-31 2025-04-03
CVE-2005-2874 json The is_path_absolute function in scheduler/client.c for the daemon in CUPS before 1.1.23 allows remote attackers to cause a d... Not Provided 2005-09-13 2025-04-03
CVE-2005-2526 json CUPS in Mac OS X 10.3.9 and 10.4.2 allows remote attackers to cause a denial of service (CPU consumption) by sending a partia... Not Provided 2005-08-19 2025-04-03
CVE-2005-2525 json CUPS in Mac OS X 10.3.9 and 10.4.2 does not properly close file descriptors when handling multiple simultaneous print jobs, w... Not Provided 2005-08-19 2025-04-03
CVE-2005-0206 json The patch for integer overflow vulnerabilities in Xpdf 2.0 and 3.0 (CVE-2004-0888) is incomplete for 64-bit architectures on ... Not Provided 2005-04-27 2025-04-03
CVE-2004-1270 json lppasswd in CUPS 1.1.22, when run in environments that do not ensure that file descriptors 0, 1, and 2 are open when lppasswd... Not Provided 2005-01-10 2025-04-03
CVE-2004-1269 json lppasswd in CUPS 1.1.22 does not remove the passwd.new file if it encounters a file-size resource limit while writing to pass... Not Provided 2005-01-10 2025-04-03
CVE-2004-1268 json lppasswd in CUPS 1.1.22 ignores write errors when modifying the CUPS passwd file, which allows local users to corrupt the fil... Not Provided 2005-01-10 2025-04-03
CVE-2004-1267 json Buffer overflow in the ParseCommand function in hpgl-input.c in the hpgltops program for CUPS 1.1.22 allows remote attackers ... Not Provided 2005-01-10 2025-04-03
CVE-2004-1125 json Buffer overflow in the Gfx::doImage function in Gfx.cc for xpdf 3.00, and other products that share code such as tetex-bin an... Not Provided 2005-01-10 2025-04-03
CVE-2004-0927 json ServerAdmin in Mac OS X 10.2.8 through 10.3.5 uses the same example self-signed certificate on each system, which allows remo... Not Provided 2005-01-27 2025-04-03
CVE-2004-0926 json Heap-based buffer overflow in Apple QuickTime on Mac OS 10.2.8 through 10.3.5 may allow remote attackers to execute arbitrary... Not Provided 2005-01-27 2025-04-03
CVE-2004-0924 json NetInfo Manager on Mac OS X 10.3.x through 10.3.5, after an initial root login, reports the root account as being disabled, e... Not Provided 2005-01-27 2025-04-03
CVE-2004-0923 json CUPS 1.1.20 and earlier records authentication information for a device URI in the error_log file, which allows local users t... Not Provided 2005-01-27 2025-04-03