跳转到帖子

Red Hat: CVE-2023-32324: cups: heap buffer overflow may lead to DoS (Multiple Advisories)

recommended_posts

发布于
  • Members

Red Hat: CVE-2023-32324: cups: heap buffer overflow may lead to DoS (Multiple Advisories)

Severity
5
CVSS
(AV:L/AC:M/Au:N/C:N/I:N/A:C)
Published
06/01/2023
Created
11/09/2023
Added
11/08/2023
Modified
01/28/2025

Description

OpenPrinting CUPS is an open source printing system. In versions 2.4.2 and prior, a heap buffer overflow vulnerability would allow a remote attacker to launch a denial of service (DoS) attack. A buffer overflow vulnerability in the function `format_log_line` could allow remote attackers to cause a DoS on the affected system. Exploitation of the vulnerability can be triggered when the configuration file `cupsd.conf` sets the value of `loglevel `to `DEBUG`. No known patches or workarounds exist at time of publication.

Solution(s)

  • redhat-upgrade-cups
  • redhat-upgrade-cups-client
  • redhat-upgrade-cups-client-debuginfo
  • redhat-upgrade-cups-debuginfo
  • redhat-upgrade-cups-debugsource
  • redhat-upgrade-cups-devel
  • redhat-upgrade-cups-filesystem
  • redhat-upgrade-cups-ipptool
  • redhat-upgrade-cups-ipptool-debuginfo
  • redhat-upgrade-cups-libs
  • redhat-upgrade-cups-libs-debuginfo
  • redhat-upgrade-cups-lpd
  • redhat-upgrade-cups-lpd-debuginfo
  • redhat-upgrade-cups-printerapp
  • redhat-upgrade-cups-printerapp-debuginfo

References

  • CVE-2023-32324
  • RHSA-2023:6596
  • RHSA-2023:7165
  • RHSA-2024:1101
  • RHSA-2024:1409
  • 查看数 698
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。
注意:你的帖子需要版主批准后才能看到。

游客
回帖…