Логотип exploitDog
bind:"CVE-2024-47175"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2024-47175"

Количество 13

Количество 13

ubuntu логотип

CVE-2024-47175

9 месяцев назад

CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.

CVSS3: 8.6
EPSS: Средний
redhat логотип

CVE-2024-47175

9 месяцев назад

CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.

CVSS3: 7.7
EPSS: Средний
nvd логотип

CVE-2024-47175

9 месяцев назад

CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.

CVSS3: 8.6
EPSS: Средний
debian логотип

CVE-2024-47175

9 месяцев назад

CUPS is a standards-based, open-source printing system, and `libppd` c ...

CVSS3: 8.6
EPSS: Средний
rocky логотип

RLSA-2025:0083

5 месяцев назад

Low: cups security update

EPSS: Средний
oracle-oval логотип

ELSA-2025-0083

5 месяцев назад

ELSA-2025-0083: cups security update (LOW)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-9470

7 месяцев назад

ELSA-2024-9470: cups security update (LOW)

EPSS: Низкий
fstec логотип

BDU:2024-07645

9 месяцев назад

Уязвимость функции ppdCreatePPDFromIPP2 библиотеки libppd сервера печати CUPS, позволяющая нарушителю записывать произвольные данные

CVSS3: 6.8
EPSS: Средний
rocky логотип

RLSA-2024:7463

8 месяцев назад

Important: cups-filters security update

EPSS: Низкий
rocky логотип

RLSA-2024:7346

9 месяцев назад

Important: cups-filters security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-7463

9 месяцев назад

ELSA-2024-7463: cups-filters security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-7346

9 месяцев назад

ELSA-2024-7346: cups-filters security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-7553

7 месяцев назад

ELSA-2024-7553: cups-filters security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-47175

CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.

CVSS3: 8.6
29%
Средний
9 месяцев назад
redhat логотип
CVE-2024-47175

CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.

CVSS3: 7.7
29%
Средний
9 месяцев назад
nvd логотип
CVE-2024-47175

CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.

CVSS3: 8.6
29%
Средний
9 месяцев назад
debian логотип
CVE-2024-47175

CUPS is a standards-based, open-source printing system, and `libppd` c ...

CVSS3: 8.6
29%
Средний
9 месяцев назад
rocky логотип
RLSA-2025:0083

Low: cups security update

29%
Средний
5 месяцев назад
oracle-oval логотип
ELSA-2025-0083

ELSA-2025-0083: cups security update (LOW)

5 месяцев назад
oracle-oval логотип
ELSA-2024-9470

ELSA-2024-9470: cups security update (LOW)

7 месяцев назад
fstec логотип
BDU:2024-07645

Уязвимость функции ppdCreatePPDFromIPP2 библиотеки libppd сервера печати CUPS, позволяющая нарушителю записывать произвольные данные

CVSS3: 6.8
29%
Средний
9 месяцев назад
rocky логотип
RLSA-2024:7463

Important: cups-filters security update

8 месяцев назад
rocky логотип
RLSA-2024:7346

Important: cups-filters security update

9 месяцев назад
oracle-oval логотип
ELSA-2024-7463

ELSA-2024-7463: cups-filters security update (IMPORTANT)

9 месяцев назад
oracle-oval логотип
ELSA-2024-7346

ELSA-2024-7346: cups-filters security update (IMPORTANT)

9 месяцев назад
oracle-oval логотип
ELSA-2024-7553

ELSA-2024-7553: cups-filters security update (IMPORTANT)

7 месяцев назад

Уязвимостей на страницу