Import Source
https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-37073.json
JSON Data
https://api.osv.dev/v1/vulns/AZL-37073
Upstream
Published
2023-06-01T17:15:09Z
Modified
2026-04-21T04:28:09.451935Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H CVSS Calculator
Summary
CVE-2023-32324 affecting package cups for versions less than 2.3.3op2-7
Details

OpenPrinting CUPS is an open source printing system. In versions 2.4.2 and prior, a heap buffer overflow vulnerability would allow a remote attacker to launch a denial of service (DoS) attack. A buffer overflow vulnerability in the function format_log_line could allow remote attackers to cause a DoS on the affected system. Exploitation of the vulnerability can be triggered when the configuration file cupsd.conf sets the value of loglevelto DEBUG. No known patches or workarounds exist at time of publication.

References

Affected packages

Azure Linux:2 / cups

Package

Name
cups
Purl
pkg:rpm/azure-linux/cups

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
2.3.3op2-7

Database specific

source
"https://github.com/microsoft/AzureLinuxVulnerabilityData/blob/main/osv/AZL-37073.json"