CORE IMPACT v7.6 - Exploits Update (Mon Nov 03 2008)
Apple CUPS HP-GL2 filter Remote Code Execution Exploit
Exploits/Remote [Mac OS X 10.5.4 (i386)]
Mon Nov 03 2008
This module exploits a specific flaw in the Hewlett-Packard Graphics Language filter. Inadequate bounds checking on the pen width and pen color opcodes result in an arbitrary memory overwrite allowing for the execution of arbitrary code as the "hgltops" process uid.
Exploits Vulnerabiltiy: CVE-2008-3641











