(no title)
bshipp | 1 year ago
Original report
Affected Vendor:
- OpenPrinting
Affected Product - Several components of the CUPS printing system: cups-browsed, libppd, libcupsfilters and cups-filters.
Affected Version - All versions <= 2.0.1 (latest release) and master.
Significant ICS/OT impact? - no
Reporter - Simone Margaritelli [evilsocket@gmail.com]
Vendor contacted? - yes The vendor has been notified trough Github Advisories and all bugs have been confirmed:
- https://github.com/OpenPrinting/cups-browsed/security/adviso...- https://github.com/OpenPrinting/libcupsfilters/security/advi...
- https://github.com/OpenPrinting/libppd/security/advisories/G...
- https://github.com/OpenPrinting/cups-filters/security/adviso...
I'm also in contact with the Canonical security team about these issues.
Description
- The vulnerability affects many GNU/Linux distributions:
[https://pkgs.org/download/cups-browsed]Google ChromeOS:
https://chromium.googlesource.com/chromiumos/overlays/chromi...
Most BSDs:
https://man.freebsd.org/cgi/man.cgi?query=cups-browsed.conf&...
And possibly more.
<snip>
bshipp|1 year ago