First published: Fri Oct 04 2024(Updated: )
CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and port in response to a single IPP UDP packet requesting a printer to be added, a different vulnerability than <a href="https://access.redhat.com/security/cve/CVE-2024-47176">CVE-2024-47176</a>. (The request is meant to probe the new printer but can be used to create DDoS amplification attacks.)
Affected Software | Affected Version | How to fix |
---|---|---|
Apple CUPS | <2.5b1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-2316417 is classified as important.
To fix REDHAT-BUG-2316417, update CUPS to version 2.5b1 or later.
REDHAT-BUG-2316417 affects versions of Apple CUPS prior to 2.5b1.
REDHAT-BUG-2316417 is a vulnerability that allows sending HTTP POST requests to arbitrary destinations.
REDHAT-BUG-2316417 was disclosed recently as part of a Red Hat bug report.