Authorization Handling Flaw in CUPS Affects Users
CVE-2010-2432
Currently unrated
What is CVE-2010-2432?
The cupsDoAuthentication function in CUPS prior to version 1.4.4 contains a flaw related to authorization management when the HAVE_GSSAPI directive is omitted. This vulnerability allows remote CUPS servers to exploit the denial of service condition by issuing HTTP_UNAUTHORIZED responses, potentially leading to an infinite loop situation.