CVE-2008-3641: CUPS: HP/GL reader insufficient bounds checking

Severity: Critical

CVSS Score: 10

The Hewlett-Packard Graphics Language (HPGL) filter in CUPS before 1.3.9 allows remote attackers to execute arbitrary code via crafted pen width and pen color opcodes that overwrite arbitrary memory.