Beveiligingsadvies

CVE-2023-4504

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-09-21 22:47:41
Laatst bijgewerkt 2025-11-04 16:10:38
Toegewezen door AHA
CVSS-score 7.0
Status PUBLISHED

Beschrijving

Due to failure in validating the length provided by an attacker-crafted PPD PostScript document, CUPS and libppd are susceptible to a heap-based buffer overflow and possibly code execution. This issue has been fixed in CUPS version 2.4.7, released in September of 2023.