CVE-2004-1270

UNKNOWN
2.1CVSS
Published: 2005-01-10
Updated: 2025-04-03
AI Analysis

Description

lppasswd in CUPS 1.1.22, when run in environments that do not ensure that file descriptors 0, 1, and 2 are open when lppasswd is called, does not verify that the passwd.new file is different from STDERR, which allows local users to control output to passwd.new via certain user input that triggers an error message.

CVSS Metrics

Vector
AV:L/AC:L/Au:N/C:N/I:P/A:N
Access Vector
local
Access Cmplx
low
Auth
none
Confidentiality
none
Integrity
partial
Availability
none
Weaknesses
NVD-CWE-Other

Metadata

Primary Vendor
EASY_SOFTWARE_PRODUCTS
Published
1/10/2005
Last Modified
4/3/2025
Source
NIST NVD
Note: Verify all details with official vendor sources before applying patches.

Affected Products

easy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupseasy_software_products : cupsredhat : fedora_coreredhat : fedora_core

AI-Powered Remediation

Generate remediation guidance or a C-suite brief for this vulnerability.

Executive Intelligence Brief

CVE-CVE-2004-1270 | UNKNOWN Severity | CVEDatabase.com | CVEDatabase.com