cups-2.3.3op2-31.el9
エラータID: AXSA:2024-9124:11
The Common UNIX Printing System (CUPS) provides a portable printing layer for Linux, UNIX, and similar operating systems.
Security Fix(es):
* cups: libppd: remote command injection via attacker controlled data in PPD file ()
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
CVE-2024-47175
CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.
Update packages.
CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.
N/A
SRPMS
- cups-2.3.3op2-31.el9.src.rpm
MD5: bd3fa06705c2d9959ae0fc8cd81d4fd0
SHA-256: dd3ec7d62730e98ebaf13470015c0d3aa21fd728b32587d99cbf816857863257
Size: 7.75 MB
Asianux Server 9 for x86_64
- cups-2.3.3op2-31.el9.x86_64.rpm
MD5: 049b6caab9f127a02c5ac8e233896f60
SHA-256: 302460c49485b32131d975ad0160438e2a9f5f059444c5e65b5a92b74c18a35c
Size: 1.48 MB - cups-client-2.3.3op2-31.el9.x86_64.rpm
MD5: 3ab7a5fb732556dffd45189b7a6cd942
SHA-256: d0e1779908bf7c47d62764ef54fc9fb0186e1cbda904125b0ca74f6ef783da6f
Size: 73.38 kB - cups-devel-2.3.3op2-31.el9.i686.rpm
MD5: 909369c6a7831126917a4d06f7869514
SHA-256: c356b529fc4bf6207d4b23de90ede8e3d1d9f7523bdc179e0cfe48c4d5927cb6
Size: 53.14 kB - cups-devel-2.3.3op2-31.el9.x86_64.rpm
MD5: 57d999b5d96c5673356af73886f2f938
SHA-256: 919f7c2e40479a1dbe91bc71063e182c38d7bb65aad4ca3d23a31251fc73f7c1
Size: 53.14 kB - cups-filesystem-2.3.3op2-31.el9.noarch.rpm
MD5: 4d652b189d3d2eea47b08f25ea0fa6d5
SHA-256: 6bb9364405c96d3292298fb27c914941d421890b79df0635742c2c52c27266e6
Size: 9.94 kB - cups-ipptool-2.3.3op2-31.el9.x86_64.rpm
MD5: 49f80c8691e5fb01562c59f638714816
SHA-256: 21f306e83f50fc0854b4de4cd81dfa3f76039bd65622f6ecc43e4f184b29e29b
Size: 3.87 MB - cups-libs-2.3.3op2-31.el9.i686.rpm
MD5: fb28f1878165025193e16365e82e970d
SHA-256: 5537fedf44d97dd1cede81ddd9ccdf6b27aa0f4112e7235c9b1724d794edbc16
Size: 279.51 kB - cups-libs-2.3.3op2-31.el9.x86_64.rpm
MD5: b8dd52a8fa231874b83a1be8b0ec543b
SHA-256: c43d8d45e874a974d0827e9e7e3b2bfcb8aab0845e5d1ebdd6eec6ff7e854607
Size: 261.65 kB - cups-lpd-2.3.3op2-31.el9.x86_64.rpm
MD5: 2cc00827ee6532b6d8c5165f72eeccc6
SHA-256: 8d70324c984d7d33b8b75b38c429157f2d8c0b94bb2cc0ea79dd1daaae9400cd
Size: 24.95 kB - cups-printerapp-2.3.3op2-31.el9.x86_64.rpm
MD5: 0e6b01d3d352c26bc8d91a8e80975687
SHA-256: 9ae7bbb584320aa4b690e33f0e866610d524146bb5b2b109c4bcca5ef22aa7b4
Size: 114.46 kB