Input validation error in libcupsfilters - CVE-2024-47076
Published: September 27, 2024 / Updated: November 22, 2024
Vulnerability identifier: #VU97742
CSH Severity: High
CVSS v4: 8.8 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2024-47076
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability:
Public exploit is available
Vulnerability details
The vulnerability allows a remote attacker to compromise the target system.
The vulnerability exists due to cfGetPrinterAttributes5 does not sanitize IPP attributes returned from an IPP server. A remote attacker can provide controlled data to the rest of the CUPS system.
Affected software
libcupsfilters
IBM Cloud Pak for Business Automation
Oracle Linux
Debian Linux
SUSE Linux Enterprise High Performance Computing 15
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise High Performance Computing LTSS 15
SUSE Linux Enterprise High Performance Computing ESPOS 15
SUSE Linux Enterprise Desktop 15
SUSE Linux Enterprise Real Time 15
SUSE Manager Proxy
SUSE Manager Retail Branch Server
SUSE Manager Server
Anolis OS
SUSE Enterprise Storage
Red Hat Enterprise Linux Server - AUS
Red Hat CodeReady Linux Builder for IBM z Systems
Red Hat CodeReady Linux Builder for ARM 64
Red Hat CodeReady Linux Builder for Power, little endian
Red Hat CodeReady Linux Builder for x86_64
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux Server - TUS
Red Hat Enterprise Linux for ARM 64 - Extended Update Support
Red Hat Enterprise Linux for Power, little endian - Extended Update Support
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support
Red Hat Enterprise Linux for x86_64 - Extended Update Support
SUSE Linux Enterprise Server 15 SP2 LTSS
SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS
SUSE Linux Enterprise Server 15 SP3 LTSS
SUSE Linux Enterprise Desktop 15 SP4 LTSS
SUSE Linux Enterprise Server 15 SP4 LTSS
Basesystem Module
openSUSE Leap
openEuler
Ubuntu
Fedora
Chrome OS
Event Processing
IBM Event Endpoint Management
watsonx Assistant for IBM Cloud Pak for Data
Watson CP4D Data Stores
Dell Hybrid Client
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions
cups-filters (Red Hat package)
cups-filters-libs
cups-filters
cups-filters-devel
cups-filters-doc
cups-filters-debugsource
cups-filters-debuginfo
cups-browsed (Ubuntu package)
cups-filters (Ubuntu package)
cups-filters-help
cups-filters (Debian package)
libcupsfilters2t64 (Ubuntu package)
libcupsfilters2-common (Ubuntu package)
cups-browsed
libppd
libcupsfilters
cups
Event Streams
Precision 3280
Precision 3260
Optiplex 7420 All-in-One
Optiplex 7410 All-in-One
Optiplex 7020
OptiPlex 7010
OptiPlex 5400 All-In-One
OptiPlex 3000 Thin Client
Latitude 5450
Latitude 5440
Latitude 3450
Latitude 3440
Latitude 3330
IBM Cloud Pak for Business Automation
Oracle Linux
Debian Linux
SUSE Linux Enterprise High Performance Computing 15
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise High Performance Computing LTSS 15
SUSE Linux Enterprise High Performance Computing ESPOS 15
SUSE Linux Enterprise Desktop 15
SUSE Linux Enterprise Real Time 15
SUSE Manager Proxy
SUSE Manager Retail Branch Server
SUSE Manager Server
Anolis OS
SUSE Enterprise Storage
Red Hat Enterprise Linux Server - AUS
Red Hat CodeReady Linux Builder for IBM z Systems
Red Hat CodeReady Linux Builder for ARM 64
Red Hat CodeReady Linux Builder for Power, little endian
Red Hat CodeReady Linux Builder for x86_64
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux Server - TUS
Red Hat Enterprise Linux for ARM 64 - Extended Update Support
Red Hat Enterprise Linux for Power, little endian - Extended Update Support
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support
Red Hat Enterprise Linux for x86_64 - Extended Update Support
SUSE Linux Enterprise Server 15 SP2 LTSS
SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS
SUSE Linux Enterprise Server 15 SP3 LTSS
SUSE Linux Enterprise Desktop 15 SP4 LTSS
SUSE Linux Enterprise Server 15 SP4 LTSS
Basesystem Module
openSUSE Leap
openEuler
Ubuntu
Fedora
Chrome OS
Event Processing
IBM Event Endpoint Management
watsonx Assistant for IBM Cloud Pak for Data
Watson CP4D Data Stores
Dell Hybrid Client
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions
cups-filters (Red Hat package)
cups-filters-libs
cups-filters
cups-filters-devel
cups-filters-doc
cups-filters-debugsource
cups-filters-debuginfo
cups-browsed (Ubuntu package)
cups-filters (Ubuntu package)
cups-filters-help
cups-filters (Debian package)
libcupsfilters2t64 (Ubuntu package)
libcupsfilters2-common (Ubuntu package)
cups-browsed
libppd
libcupsfilters
cups
Event Streams
Precision 3280
Precision 3260
Optiplex 7420 All-in-One
Optiplex 7410 All-in-One
Optiplex 7020
OptiPlex 7010
OptiPlex 5400 All-In-One
OptiPlex 3000 Thin Client
Latitude 5450
Latitude 5440
Latitude 3450
Latitude 3440
Latitude 3330
How to mitigate CVE-2024-47076
Install update from vendor's website.
libcupsfilters - update to 2.1.0
Event Processing - update to 1.2.2
IBM Event Endpoint Management - update to 11.3.2
Event Streams - update to 11.5.1
cups-filters (Red Hat package) - addressed in versions 1.0.35-26.el7_7.3, 1.0.35-29.el7_9.3, 1.20.0-19.el8_2.2, 1.20.0-24.el8_4.2, 1.20.0-27.el8_6.3, 1.20.0-29.el8_8.3, 1.20.0-35.el8_10, 1.28.7-10.el9_0.2, 1.28.7-11.el9_2.2, 1.28.7-17.el9_4
cups-filters-libs - addressed in versions 1.0.35-29, 1.20.0-35.0.1
cups-filters - addressed in versions 1.0.35-29, 1.20.0-35.0.1
cups-filters-devel - addressed in versions 1.0.35-29, 1.20.0-35.0.1
cups-filters-doc - update to 1.20.0-35.0.1
cups-filters-debugsource - update to 1.25.0-150200.3.19.2
cups-filters-devel - update to 1.25.0-150200.3.19.2
cups-filters-debuginfo - update to 1.25.0-150200.3.19.2
cups-filters - update to 1.25.0-150200.3.19.2
cups-browsed (Ubuntu package) - addressed in versions 1.27.4-1ubuntu0.3, 1.27.4-1ubuntu0.4, 1.28.15-0ubuntu1.3, 1.28.15-0ubuntu1.4
cups-filters (Ubuntu package) - addressed in versions 1.27.4-1ubuntu0.3, 1.27.4-1ubuntu0.4, 1.28.15-0ubuntu1.3, 1.28.15-0ubuntu1.4
cups-filters-devel - update to 1.28.9-5
cups-filters-debugsource - update to 1.28.9-5
cups-filters-debuginfo - update to 1.28.9-5
cups-filters-help - update to 1.28.9-5
cups-filters - update to 1.28.9-5
cups-filters (Debian package) - update to 1.28.17-3+deb12u1
libcupsfilters2t64 (Ubuntu package) - update to 2.0.0-0ubuntu7.1
libcupsfilters2-common (Ubuntu package) - update to 2.0.0-0ubuntu7.1
cups-browsed - addressed in versions 2.0.1-3.fc39, 2.0.1-3.fc40
libppd - addressed in versions 2.1~b1-2.fc39, 2.1~b1-2.fc40
libcupsfilters - addressed in versions 2.1~b1-3.fc39, 2.1~b1-3.fc40
cups - addressed in versions 2.4.10-7.fc39, 2.4.10-7.fc40
watsonx Assistant for IBM Cloud Pak for Data - update to 4.8.8
Watson CP4D Data Stores - update to 5.1
IBM Cloud Pak for Business Automation - addressed in versions 21.0.3-IF039, 24.0.0-IF004, 24.0.1
Chrome OS - update to 126.0.6478.254
Precision 3280 - update to 2412
Precision 3260 - update to 2412
Optiplex 7420 All-in-One - update to 2412
Optiplex 7410 All-in-One - update to 2412
Optiplex 7020 - update to 2412
OptiPlex 7010 - update to 2412
OptiPlex 5400 All-In-One - update to 2412
OptiPlex 3000 Thin Client - update to 2412
Latitude 5450 - update to 2412
Latitude 5440 - update to 2412
Latitude 3450 - update to 2412
Latitude 3440 - update to 2412
Latitude 3330 - update to 2412
Dell Hybrid Client - update to 2412
Event Processing - update to 1.2.2
IBM Event Endpoint Management - update to 11.3.2
Event Streams - update to 11.5.1
cups-filters (Red Hat package) - addressed in versions 1.0.35-26.el7_7.3, 1.0.35-29.el7_9.3, 1.20.0-19.el8_2.2, 1.20.0-24.el8_4.2, 1.20.0-27.el8_6.3, 1.20.0-29.el8_8.3, 1.20.0-35.el8_10, 1.28.7-10.el9_0.2, 1.28.7-11.el9_2.2, 1.28.7-17.el9_4
cups-filters-libs - addressed in versions 1.0.35-29, 1.20.0-35.0.1
cups-filters - addressed in versions 1.0.35-29, 1.20.0-35.0.1
cups-filters-devel - addressed in versions 1.0.35-29, 1.20.0-35.0.1
cups-filters-doc - update to 1.20.0-35.0.1
cups-filters-debugsource - update to 1.25.0-150200.3.19.2
cups-filters-devel - update to 1.25.0-150200.3.19.2
cups-filters-debuginfo - update to 1.25.0-150200.3.19.2
cups-filters - update to 1.25.0-150200.3.19.2
cups-browsed (Ubuntu package) - addressed in versions 1.27.4-1ubuntu0.3, 1.27.4-1ubuntu0.4, 1.28.15-0ubuntu1.3, 1.28.15-0ubuntu1.4
cups-filters (Ubuntu package) - addressed in versions 1.27.4-1ubuntu0.3, 1.27.4-1ubuntu0.4, 1.28.15-0ubuntu1.3, 1.28.15-0ubuntu1.4
cups-filters-devel - update to 1.28.9-5
cups-filters-debugsource - update to 1.28.9-5
cups-filters-debuginfo - update to 1.28.9-5
cups-filters-help - update to 1.28.9-5
cups-filters - update to 1.28.9-5
cups-filters (Debian package) - update to 1.28.17-3+deb12u1
libcupsfilters2t64 (Ubuntu package) - update to 2.0.0-0ubuntu7.1
libcupsfilters2-common (Ubuntu package) - update to 2.0.0-0ubuntu7.1
cups-browsed - addressed in versions 2.0.1-3.fc39, 2.0.1-3.fc40
libppd - addressed in versions 2.1~b1-2.fc39, 2.1~b1-2.fc40
libcupsfilters - addressed in versions 2.1~b1-3.fc39, 2.1~b1-3.fc40
cups - addressed in versions 2.4.10-7.fc39, 2.4.10-7.fc40
watsonx Assistant for IBM Cloud Pak for Data - update to 4.8.8
Watson CP4D Data Stores - update to 5.1
IBM Cloud Pak for Business Automation - addressed in versions 21.0.3-IF039, 24.0.0-IF004, 24.0.1
Chrome OS - update to 126.0.6478.254
Precision 3280 - update to 2412
Precision 3260 - update to 2412
Optiplex 7420 All-in-One - update to 2412
Optiplex 7410 All-in-One - update to 2412
Optiplex 7020 - update to 2412
OptiPlex 7010 - update to 2412
OptiPlex 5400 All-In-One - update to 2412
OptiPlex 3000 Thin Client - update to 2412
Latitude 5450 - update to 2412
Latitude 5440 - update to 2412
Latitude 3450 - update to 2412
Latitude 3440 - update to 2412
Latitude 3330 - update to 2412
Dell Hybrid Client - update to 2412
Links to Public Exploits and PoC-codes
External References
- https://github.com/OpenPrinting/libcupsfilters/security/advisories/GHSA-w63j-6g73-wmg5
- https://github.com/OpenPrinting/cups-browsed/security/advisories/GHSA-rj88-6mr5-rcw8
- https://github.com/OpenPrinting/cups-filters/security/advisories/GHSA-p9rh-jxmq-gq47
- https://github.com/OpenPrinting/libppd/security/advisories/GHSA-7xfx-47qg-grp6
- https://www.cups.org
- https://www.evilsocket.net/2024/09/26/Attacking-UNIX-systems-via-CUPS-Part-I
- https://github.com/OpenPrinting/libcupsfilters/releases/tag/2.1.0
Related Security Bulletins
- Input validation error in OpenPrinting libcupsfilters
- Ubuntu update for libcupsfilters
- Ubuntu update for cups-filters
- Fedora 40 update for cups, cups-browsed, libcupsfilters, libppd
- Fedora 39 update for cups, cups-browsed, libcupsfilters, libppd
- Debian update for cups-filters
- Red Hat Enterprise Linux 9 update for cups-filters
- Red Hat Enterprise Linux 8 update for cups-filters
- Red Hat Enterprise Linux 8 update for cups-filters
- Red Hat Enterprise Linux 8 update for cups-filters
- Red Hat Enterprise Linux 9 update for cups-filters
- Red Hat Enterprise Linux 8 update for cups-filters
- Red Hat Enterprise Linux 9 update for cups-filters
- Red Hat Enterprise Linux 7 update for cups-filters
- Red Hat Enterprise Linux 7 Extended Lifecycle Support update for cups-filters
- Multiple vulnerabilities in Google ChromeOS LTS
- Red Hat Enterprise Linux 8 update for cups-filters
- Ubuntu update for cups-filters
- openEuler update for cups-filters
- Multiple vulnerabilities in Oracle Linux
- SUSE update for cups-filters
- Multiple vulnerabilities in IBM Event Processing
- Multiple vulnerabilities in IBM Event Streams
- Multiple vulnerabilities in IBM Event Endpoint Management
- Multiple vulnerabilities in Dell Hybrid Client
- Multiple vulnerabilities in IBM Watson CP4D Data Stores
- Multiple vulnerabilities in IBM watsonx Assistant for IBM Cloud Pak for Data
- Multiple vulnerabilities in IBM Cloud Pak for Business Automation
- Anolis OS update for cups-filters
- Anolis OS update for cups-filters