Total vulnerabilities in the database
Due to failure in validating the length provided by an attacker-crafted PPD PostScript document, CUPS and libppd are susceptible to a heap-based buffer overflow and possibly code execution. This issue has been fixed in CUPS version 2.4.7, released in September of 2023.
Software | From | Fixed in |
---|---|---|
openprinting / cups | - | 2.4.7 |
openprinting / libppd | 2.0-rc2 | 2.0-rc2.x |
fedoraproject / fedora | 37 | 37.x |
fedoraproject / fedora | 38 | 38.x |
fedoraproject / fedora | 39 | 39.x |
debian / debian_linux | 10.0 | 10.0.x |