USN-7043-2: cups-filters vulnerability
USN-7043-1 fixed a vulnerability in cups-filters. This update provides the corresponding update for Ubuntu 18.04 LTS. Original advisory details: Simone Margaritelli discovered that the cups-filters cups-browsed component could be used to create arbitrary printers from outside the local network. In combination with issues in other printing components, a remote attacker could possibly use this issue to connect to a system, created manipulated PPD files, and execute arbitrary code when a printer is used. This update disables support for the legacy CUPS printer discovery protocol.
Affected Software
Event History
Frequently Asked Questions
What is the severity of USN-7043-2?
The severity of USN-7043-2 is considered to be critical due to the potential for arbitrary printer creation.
How do I fix USN-7043-2?
To fix USN-7043-2, upgrade the cups-browsed or cups-filters packages to version 1.20.2-0ubuntu3.3+esm1 on Ubuntu 18.04 LTS.
Which products are affected by USN-7043-2?
USN-7043-2 affects the cups-browsed and cups-filters components of Ubuntu 18.04 LTS.
Who discovered the vulnerability related to USN-7043-2?
The vulnerability in USN-7043-2 was discovered by Simone Margaritelli.
Is USN-7043-2 specific to a certain Ubuntu version?
Yes, USN-7043-2 specifically addresses vulnerabilities in Ubuntu 18.04 LTS.