Skip to main content

Threats Tagged 'cve-2024-47076'

View all threats tagged with 'cve-2024-47076'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2024-47076

Threats Tagged 'cve-2024-47076'

Click on any threat for detailed analysis and mitigation recommendations

0

A security update for the cups-filters package in Red Hat Enterprise Linux 7.7 addresses multiple vulnerabilities including an unsanitized IPP attribute issue in the cfGetPrinterAttributes API (CVE-2024-47076), a cups-browsed UDP binding trust issue, and a remote command injection via PPD file in cups libppd. These vulnerabilities could allow attackers to exploit the printing system components. Red Hat has released updated packages to fix these issues.

Join the discussion
0

A security update for the cups-filters package in Red Hat Enterprise Linux 9.2 addresses multiple vulnerabilities including CVE-2024-47076, where the cfGetPrinterAttributes API does not sanitize returned IPP attributes. Other issues fixed include a cups-browsed UDP binding vulnerability and a remote command injection in the cups libppd component. These vulnerabilities could allow attackers to exploit unsanitized inputs or trust packets from any source. The update is rated as Important by Red Hat Product Security and affects several Red Hat Enterprise Linux 9.2 variants and architectures.

Join the discussion
0

Multiple security vulnerabilities have been identified in the cups-filters package used in Red Hat Enterprise Linux versions 7 and 8.6. Notably, the libcupsfilters cfGetPrinterAttributes API does not sanitize returned IPP attributes (CVE-2024-47076), which could lead to security issues. Additional vulnerabilities include remote command injection via attacker-controlled data in PPD files and a DDoS amplification attack vector in cups-browsed. Red Hat has released security updates addressing these issues for affected versions.

Join the discussion
0

A security update for the cups-filters package in Red Hat Enterprise Linux 8 addresses multiple vulnerabilities, including CVE-2024-47076 where the cfGetPrinterAttributes API does not sanitize returned IPP attributes. Other issues fixed include cups-browsed binding on UDP INADDR_ANY:631 trusting any packet and a remote command injection vulnerability in cups libppd. These vulnerabilities could lead to security risks if exploited. The update is rated as Important by Red Hat and patches are available for affected versions.

Join the discussion
0

A security update for the cups-filters package in Red Hat Enterprise Linux 8.8 addresses multiple vulnerabilities including an issue in the cfGetPrinterAttributes API that does not sanitize returned IPP attributes (CVE-2024-47076). Other related issues include cups-browsed binding on UDP INADDR_ANY:631 without source validation and a remote command injection vulnerability in cups libppd. These vulnerabilities have been rated as important by Red Hat Product Security and affect various Red Hat Enterprise Linux 8.8 Extended Update Support and Extended Life Cycle Long Life versions.

Join the discussion
0

A security update for the cups-filters package in Red Hat Enterprise Linux 9 addresses multiple vulnerabilities including an unsanitized IPP attribute issue in the cfGetPrinterAttributes API (CVE-2024-47076), a cups-browsed UDP binding issue, and a remote command injection vulnerability in the cups libppd component. These issues could allow attackers to exploit the printing system components. The update is rated as important by Red Hat and patches are available for affected versions.

Join the discussion

CUPS is a standards-based, open-source printing system, and `libcupsfilters` contains the code of the filters of the former `cups-filters` package as library functions to be used for the data format conversion tasks needed in Printer Applications. The `cfGetPrinterAttributes5` function in `libcupsfilters` does not sanitize IPP attributes returned from an IPP server. When these IPP attributes are used, for instance, to generate a PPD file, this can lead to attacker controlled data to be provided to the rest of the CUPS system.

Join the discussion

Showing 1 to 7 of 7 results

Filters:Tag: cve-2024-47076
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses