First published: Mon Apr 27 2020(Updated: )
It was discovered that CUPS incorrectly handled certain language values. A local attacker could possibly use this issue to cause CUPS to crash, leading to a denial of service, or possibly obtain sensitive information. This issue only applied to Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 19.10. (CVE-2019-2228) Stephan Zeisberg discovered that CUPS incorrectly handled certain malformed ppd files. A local attacker could possibly use this issue to execute arbitrary code. (CVE-2020-3898)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/cups | <2.3.1-9ubuntu1.1 | 2.3.1-9ubuntu1.1 |
Ubuntu Linux | =20.04 | |
All of | ||
ubuntu/cups | <2.2.12-2ubuntu1.1 | 2.2.12-2ubuntu1.1 |
Ubuntu Linux | =19.10 | |
All of | ||
ubuntu/cups | <2.2.7-1ubuntu2.8 | 2.2.7-1ubuntu2.8 |
Ubuntu Linux | =18.04 | |
All of | ||
ubuntu/cups | <2.1.3-4ubuntu0.11 | 2.1.3-4ubuntu0.11 |
Ubuntu Linux | =16.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this advisory is USN-4340-1.
The severity of USN-4340-1 is not specified.
Ubuntu 16.04 LTS, Ubuntu 18.04 LTS, and Ubuntu 19.10 are affected by USN-4340-1.
The remedy for USN-4340-1 is updating to version 2.3.1-9ubuntu1.1 for affected versions of Ubuntu.
You can find more information about USN-4340-1 at the following link: [USN-4340-1](https://ubuntu.com/security/USN-4340-1)