REDHAT-BUG-558460: High severity cups libraries vulnerability
CUPS 1.3.x and earlier ships setuid binaries which use environment variables to set the directories in which they operate.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-558460?
REDHAT-BUG-558460 is classified as a moderate vulnerability due to the risks associated with setuid binaries using environment variables.
How do I fix REDHAT-BUG-558460?
You can fix REDHAT-BUG-558460 by upgrading to CUPS version 1.4.x or later, which addresses this vulnerability.
What systems are affected by REDHAT-BUG-558460?
The affected systems include CUPS versions 1.3.x and earlier, which are susceptible to the described vulnerability.
What are the consequences of REDHAT-BUG-558460?
The consequences of REDHAT-BUG-558460 may include unauthorized access and manipulation of system directories via exploited setuid binaries.
Is there a workaround for REDHAT-BUG-558460?
While a specific workaround is not detailed, it is advisable to limit the use of setuid binaries until an upgrade can be performed.