Input validation error in libcupsfilters - CVE-2024-47076

 

Input validation error in libcupsfilters - CVE-2024-47076

Published: September 27, 2024 / Updated: November 22, 2024


Vulnerability identifier: #VU97742
CSH Severity: High
CVSS v4: 8.8 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:L/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2024-47076
CWE-ID: CWE-20
Exploitation vector: Remote access
Exploit availability: Public exploit is available

Vulnerability details

The vulnerability allows a remote attacker to compromise the target system.

The vulnerability exists due to cfGetPrinterAttributes5 does not sanitize IPP attributes returned from an IPP server. A remote attacker can provide controlled data to the rest of the CUPS system.


Affected software

libcupsfilters
IBM Cloud Pak for Business Automation
Oracle Linux
Debian Linux
SUSE Linux Enterprise High Performance Computing 15
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server for SAP Applications 15
SUSE Linux Enterprise High Performance Computing LTSS 15
SUSE Linux Enterprise High Performance Computing ESPOS 15
SUSE Linux Enterprise Desktop 15
SUSE Linux Enterprise Real Time 15
SUSE Manager Proxy
SUSE Manager Retail Branch Server
SUSE Manager Server
Anolis OS
SUSE Enterprise Storage
Red Hat Enterprise Linux Server - AUS
Red Hat CodeReady Linux Builder for IBM z Systems
Red Hat CodeReady Linux Builder for ARM 64
Red Hat CodeReady Linux Builder for Power, little endian
Red Hat CodeReady Linux Builder for x86_64
Red Hat Enterprise Linux for ARM 64
Red Hat Enterprise Linux for Power, little endian
Red Hat Enterprise Linux for IBM z Systems
Red Hat Enterprise Linux for x86_64
Red Hat Enterprise Linux Server - TUS
Red Hat Enterprise Linux for ARM 64 - Extended Update Support
Red Hat Enterprise Linux for Power, little endian - Extended Update Support
Red Hat Enterprise Linux for IBM z Systems - Extended Update Support
Red Hat Enterprise Linux for x86_64 - Extended Update Support
SUSE Linux Enterprise Server 15 SP2 LTSS
SUSE Linux Enterprise High Performance Computing 15 SP2 LTSS
SUSE Linux Enterprise Server 15 SP3 LTSS
SUSE Linux Enterprise Desktop 15 SP4 LTSS
SUSE Linux Enterprise Server 15 SP4 LTSS
Basesystem Module
openSUSE Leap
openEuler
Ubuntu
Fedora
Chrome OS
Event Processing
IBM Event Endpoint Management
watsonx Assistant for IBM Cloud Pak for Data
Watson CP4D Data Stores
Dell Hybrid Client
Red Hat Enterprise Linux Server for Power LE - Update Services for SAP Solutions
cups-filters (Red Hat package)
cups-filters-libs
cups-filters
cups-filters-devel
cups-filters-doc
cups-filters-debugsource
cups-filters-debuginfo
cups-browsed (Ubuntu package)
cups-filters (Ubuntu package)
cups-filters-help
cups-filters (Debian package)
libcupsfilters2t64 (Ubuntu package)
libcupsfilters2-common (Ubuntu package)
cups-browsed
libppd
libcupsfilters
cups
Event Streams
Precision 3280
Precision 3260
Optiplex 7420 All-in-One
Optiplex 7410 All-in-One
Optiplex 7020
OptiPlex 7010
OptiPlex 5400 All-In-One
OptiPlex 3000 Thin Client
Latitude 5450
Latitude 5440
Latitude 3450
Latitude 3440
Latitude 3330

How to mitigate CVE-2024-47076

Install update from vendor's website.

libcupsfilters - update to 2.1.0
Event Processing - update to 1.2.2
IBM Event Endpoint Management - update to 11.3.2
Event Streams - update to 11.5.1
cups-filters (Red Hat package) - addressed in versions 1.0.35-26.el7_7.3, 1.0.35-29.el7_9.3, 1.20.0-19.el8_2.2, 1.20.0-24.el8_4.2, 1.20.0-27.el8_6.3, 1.20.0-29.el8_8.3, 1.20.0-35.el8_10, 1.28.7-10.el9_0.2, 1.28.7-11.el9_2.2, 1.28.7-17.el9_4
cups-filters-libs - addressed in versions 1.0.35-29, 1.20.0-35.0.1
cups-filters - addressed in versions 1.0.35-29, 1.20.0-35.0.1
cups-filters-devel - addressed in versions 1.0.35-29, 1.20.0-35.0.1
cups-filters-doc - update to 1.20.0-35.0.1
cups-filters-debugsource - update to 1.25.0-150200.3.19.2
cups-filters-devel - update to 1.25.0-150200.3.19.2
cups-filters-debuginfo - update to 1.25.0-150200.3.19.2
cups-filters - update to 1.25.0-150200.3.19.2
cups-browsed (Ubuntu package) - addressed in versions 1.27.4-1ubuntu0.3, 1.27.4-1ubuntu0.4, 1.28.15-0ubuntu1.3, 1.28.15-0ubuntu1.4
cups-filters (Ubuntu package) - addressed in versions 1.27.4-1ubuntu0.3, 1.27.4-1ubuntu0.4, 1.28.15-0ubuntu1.3, 1.28.15-0ubuntu1.4
cups-filters-devel - update to 1.28.9-5
cups-filters-debugsource - update to 1.28.9-5
cups-filters-debuginfo - update to 1.28.9-5
cups-filters-help - update to 1.28.9-5
cups-filters - update to 1.28.9-5
cups-filters (Debian package) - update to 1.28.17-3+deb12u1
libcupsfilters2t64 (Ubuntu package) - update to 2.0.0-0ubuntu7.1
libcupsfilters2-common (Ubuntu package) - update to 2.0.0-0ubuntu7.1
cups-browsed - addressed in versions 2.0.1-3.fc39, 2.0.1-3.fc40
libppd - addressed in versions 2.1~b1-2.fc39, 2.1~b1-2.fc40
libcupsfilters - addressed in versions 2.1~b1-3.fc39, 2.1~b1-3.fc40
cups - addressed in versions 2.4.10-7.fc39, 2.4.10-7.fc40
watsonx Assistant for IBM Cloud Pak for Data - update to 4.8.8
Watson CP4D Data Stores - update to 5.1
IBM Cloud Pak for Business Automation - addressed in versions 21.0.3-IF039, 24.0.0-IF004, 24.0.1
Chrome OS - update to 126.0.6478.254
Precision 3280 - update to 2412
Precision 3260 - update to 2412
Optiplex 7420 All-in-One - update to 2412
Optiplex 7410 All-in-One - update to 2412
Optiplex 7020 - update to 2412
OptiPlex 7010 - update to 2412
OptiPlex 5400 All-In-One - update to 2412
OptiPlex 3000 Thin Client - update to 2412
Latitude 5450 - update to 2412
Latitude 5440 - update to 2412
Latitude 3450 - update to 2412
Latitude 3440 - update to 2412
Latitude 3330 - update to 2412
Dell Hybrid Client - update to 2412

Links to Public Exploits and PoC-codes

External References

Related Security Bulletins