ALPINE-CVE-2023-32324

Source
https://security.alpinelinux.org/vuln/CVE-2023-32324
Import Source
https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2023-32324.json
JSON Data
https://api.osv.dev/v1/vulns/ALPINE-CVE-2023-32324
Upstream
Published
2023-06-01T17:15:09Z
Modified
2026-08-27T22:18:02Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

OpenPrinting CUPS is an open source printing system. In versions 2.4.2 and prior, a heap buffer overflow vulnerability would allow a remote attacker to launch a denial of service (DoS) attack. A buffer overflow vulnerability in the function format_log_line could allow remote attackers to cause a DoS on the affected system. Exploitation of the vulnerability can be triggered when the configuration file cupsd.conf sets the value of loglevel to DEBUG. No known patches or workarounds exist at time of publication.

References

Affected packages

Alpine:v3.15
cups

Package

Name
cups
Purl
pkg:apk/alpine/cups?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
2.3.3-r7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2023-32324.json"
Alpine:v3.16
cups

Package

Name
cups
Purl
pkg:apk/alpine/cups?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
2.4.2-r1

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2023-32324.json"
Alpine:v3.17
cups

Package

Name
cups
Purl
pkg:apk/alpine/cups?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
2.4.2-r2

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2023-32324.json"
Alpine:v3.18
cups

Package

Name
cups
Purl
pkg:apk/alpine/cups?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
2.4.2-r7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2023-32324.json"
Alpine:v3.19
cups

Package

Name
cups
Purl
pkg:apk/alpine/cups?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
2.4.2-r7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2023-32324.json"
Alpine:v3.20
cups

Package

Name
cups
Purl
pkg:apk/alpine/cups?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
2.4.2-r7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2023-32324.json"
Alpine:v3.21
cups

Package

Name
cups
Purl
pkg:apk/alpine/cups?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
2.4.2-r7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2023-32324.json"
Alpine:v3.22
cups

Package

Name
cups
Purl
pkg:apk/alpine/cups?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
2.4.2-r7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2023-32324.json"
Alpine:v3.23
cups

Package

Name
cups
Purl
pkg:apk/alpine/cups?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
2.4.2-r7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2023-32324.json"
Alpine:v3.24
cups

Package

Name
cups
Purl
pkg:apk/alpine/cups?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
2.4.2-r7

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/alpine/ALPINE-CVE-2023-32324.json"