OESA-2023-1705
Dashboard / Vulnerabilities / OESA-2023-1705
Summary: cups security update
Details: CUPS is the standards-based, open source printing system developed by Apple Inc. for UNIX®-like operating systems. CUPS uses the Internet Printing Protocol (IPP) to support printing to local and network printers.. Security Fix(es): Due to failure in validating the length provided by an attacker-crafted PPD PostScript document, CUPS and libppd are susceptible to a heap-based buffer overflow and possibly code execution. This issue has been fixed in CUPS version 2.4.7, released in September of 2023. (CVE-2023-4504)
References: https://www.openeuler.org/en/security/safety-bulletin/detail.html?id=openEuler-SA-2023-1705, https://nvd.nist.gov/vuln/detail/CVE-2023-4504
Affected packages
Package
Name: cups
Purl: pkg:rpm/openEuler/cups&distro=openEuler-22.03-LTS-SP2
Affected ranges
Type: ECOSYSTEM
Events:
