Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-64612

Опубликовано: 20 июл. 2026
Источник: debian
EPSS Низкий

Описание

A flaw was found in libcupsfilters and cups-filters. The PNG image reading function creates a libpng reader without installing an error recovery handler, causing the CUPS image filter process to abort when processing a malformed PNG file. An unauthenticated attacker could exploit this by submitting a specially crafted PNG print job, leading to denial of service of the in-flight print job.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libcupsfiltersunfixedpackage
libcupsfiltersno-dsatrixiepackage
libcupsfilterspostponedbookwormpackage
libcupsfilterspostponedbullseyepackage
cups-filtersunfixedpackage
cups-filtersno-dsatrixiepackage
cups-filterspostponedbookwormpackage
cups-filterspostponedbullseyepackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2502801

  • https://github.com/OpenPrinting/libcupsfilters/security/advisories/GHSA-7mxj-cfq5-84ch

  • https://github.com/OpenPrinting/libcupsfilters/commit/e8888af31419acbd0cbcc8340f41a383f35aae12 (2.2.0)

EPSS

Процентиль: 32%
0.00382
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 2 месяцев назад

A flaw was found in libcupsfilters and cups-filters. The PNG image reading function creates a libpng reader without installing an error recovery handler, causing the CUPS image filter process to abort when processing a malformed PNG file. An unauthenticated attacker could exploit this by submitting a specially crafted PNG print job, leading to denial of service of the in-flight print job.

CVSS3: 7.5
redhat
3 месяца назад

A flaw was found in libcupsfilters and cups-filters. The PNG image reading function creates a libpng reader without installing an error recovery handler, causing the CUPS image filter process to abort when processing a malformed PNG file. An unauthenticated attacker could exploit this by submitting a specially crafted PNG print job, leading to denial of service of the in-flight print job.

CVSS3: 7.5
nvd
около 2 месяцев назад

A flaw was found in libcupsfilters and cups-filters. The PNG image reading function creates a libpng reader without installing an error recovery handler, causing the CUPS image filter process to abort when processing a malformed PNG file. An unauthenticated attacker could exploit this by submitting a specially crafted PNG print job, leading to denial of service of the in-flight print job.

rocky
23 дня назад

Moderate: cups-filters security update

rocky
26 дней назад

Moderate: cups-filters security update

EPSS

Процентиль: 32%
0.00382
Низкий