https://seclists.org/oss-sec/2024/q2/277: CVE-2024-35235 cups: Cupsd Listen arbitrary chmod 0140777
Published Jun 11, 2024
·Updated
Affected Software
1 affected component
cups CUPS
Frequently Asked Questions
1
What is the severity of CVE-2024-35235?
The severity of CVE-2024-35235 is classified as Moderate with a CVSS score of 6.8.
2
How do I fix CVE-2024-35235?
To fix CVE-2024-35235, it is recommended to update to the latest version of CUPS that addresses this vulnerability.
3
What impact does CVE-2024-35235 have on systems?
CVE-2024-35235 allows an attacker to exploit the Cups daemon's permissions to change file attributes arbitrarily.
4
Is CVE-2024-35235 exploitable remotely?
Yes, CVE-2024-35235 can be exploited remotely due to the nature of its vulnerability in the Cups daemon.
5
Which versions of CUPS are affected by CVE-2024-35235?
CVE-2024-35235 affects all versions of CUPS prior to the patched release after June 11, 2024.