Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-47850

Опубликовано: 04 окт. 2024
Источник: debian
EPSS Низкий

Описание

CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and port in response to a single IPP UDP packet requesting a printer to be added, a different vulnerability than CVE-2024-47176. (The request is meant to probe the new printer but can be used to create DDoS amplification attacks.)

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cups-filtersunfixedpackage
cups-filtersignoredtrixiepackage
cups-filtersignoredbookwormpackage
cups-filtersignoredbullseyepackage

Примечания

  • https://www.akamai.com/blog/security-research/october-cups-ddos-threat

  • https://www.openwall.com/lists/oss-security/2024/10/04/1

  • https://github.com/advisories/GHSA-phc2-g348-384g

EPSS

Процентиль: 30%
0.00107
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
9 месяцев назад

CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and port in response to a single IPP UDP packet requesting a printer to be added, a different vulnerability than CVE-2024-47176. (The request is meant to probe the new printer but can be used to create DDoS amplification attacks.)

CVSS3: 7.5
redhat
9 месяцев назад

CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and port in response to a single IPP UDP packet requesting a printer to be added, a different vulnerability than CVE-2024-47176. (The request is meant to probe the new printer but can be used to create DDoS amplification attacks.)

CVSS3: 7.5
nvd
9 месяцев назад

CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and port in response to a single IPP UDP packet requesting a printer to be added, a different vulnerability than CVE-2024-47176. (The request is meant to probe the new printer but can be used to create DDoS amplification attacks.)

suse-cvrf
8 месяцев назад

Security update for cups-filters

CVSS3: 7.5
github
9 месяцев назад

CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and port in response to a single IPP UDP packet requesting a printer to be added, a different vulnerability than CVE-2024-47176. (The request is meant to probe the new printer but can be used to create DDoS amplification attacks.)

EPSS

Процентиль: 30%
0.00107
Низкий