RHSA-2024:7503: Important: cups-filters security update
Important: cups-filters security update
Other sources
The cups-filters package contains back ends, filters, and other software that was once part of the core Common UNIX Printing System (CUPS) distribution but is now maintained independently. <br>Security Fix(es):<br><li> cups-browsed: cups-browsed binds on UDP INADDRANY:631 trusting any packet from any source ()</li> <li> cups-filters: libcupsfilters: cfGetPrinterAttributes API does not perform sanitization on returned IPP attributes (CVE-2024-47076)</li> <li> cups: libppd: remote command injection via attacker controlled data in PPD file ()</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2024:7503?
The severity of RHSA-2024:7503 is classified as important.
How do I fix RHSA-2024:7503?
To fix RHSA-2024:7503, update the cups-filters package to version 1.28.7-11.el9_2.2 or later.
What products are affected by RHSA-2024:7503?
The affected products include various versions of Red Hat Enterprise Linux and related packages.
What is the main issue addressed in RHSA-2024:7503?
RHSA-2024:7503 addresses a security vulnerability in the cups-filters package.
Which packages need to be updated for RHSA-2024:7503?
You need to update the cups-filters, cups-filters-debuginfo, and related packages to resolve this vulnerability.