USN-7041-2: CUPS vulnerability
USN-7041-1 fixed a vulnerability in CUPS. This update provides the corresponding update for Ubuntu 18.04 LTS. Original advisory details: Simone Margaritelli discovered that CUPS incorrectly sanitized IPP data when creating PPD files. A remote attacker could possibly use this issue to manipulate PPD files and execute arbitrary code when a printer is used.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-7041-2?
The severity of USN-7041-2 is considered important due to the potential for remote code execution via crafted IPP data.
How do I fix USN-7041-2?
To fix USN-7041-2, update the CUPS package to version 2.2.7-1ubuntu2.10+esm6 on Ubuntu 18.04 LTS.
What systems are affected by USN-7041-2?
USN-7041-2 affects Ubuntu 18.04 LTS systems running CUPS prior to version 2.2.7-1ubuntu2.10+esm6.
Who discovered the vulnerability associated with USN-7041-2?
The vulnerability associated with USN-7041-2 was discovered by Simone Margaritelli.
What type of vulnerability is addressed in USN-7041-2?
USN-7041-2 addresses a vulnerability in CUPS that involves improper sanitization of IPP data when creating PPD files.