Due to failure in validating the length provided by an attacker-crafted PPD PostScript document, CUPS and libppd are susceptible to a heap-based buffer overflow and possibly code execution. This issue has been fixed in CUPS version 2.4.7, released in September of 2023.
{
"binaries": [
{
"binary_name": "cups",
"binary_version": "2.3.1-9ubuntu1.6"
},
{
"binary_name": "cups-bsd",
"binary_version": "2.3.1-9ubuntu1.6"
},
{
"binary_name": "cups-client",
"binary_version": "2.3.1-9ubuntu1.6"
},
{
"binary_name": "cups-common",
"binary_version": "2.3.1-9ubuntu1.6"
},
{
"binary_name": "cups-core-drivers",
"binary_version": "2.3.1-9ubuntu1.6"
},
{
"binary_name": "cups-daemon",
"binary_version": "2.3.1-9ubuntu1.6"
},
{
"binary_name": "cups-ipp-utils",
"binary_version": "2.3.1-9ubuntu1.6"
},
{
"binary_name": "cups-ppdc",
"binary_version": "2.3.1-9ubuntu1.6"
},
{
"binary_name": "cups-server-common",
"binary_version": "2.3.1-9ubuntu1.6"
},
{
"binary_name": "libcups2",
"binary_version": "2.3.1-9ubuntu1.6"
},
{
"binary_name": "libcups2-dev",
"binary_version": "2.3.1-9ubuntu1.6"
},
{
"binary_name": "libcupsimage2",
"binary_version": "2.3.1-9ubuntu1.6"
},
{
"binary_name": "libcupsimage2-dev",
"binary_version": "2.3.1-9ubuntu1.6"
}
],
"availability": "No subscription required"
}{
"binaries": [
{
"binary_name": "cups",
"binary_version": "2.4.1op1-1ubuntu4.7"
},
{
"binary_name": "cups-bsd",
"binary_version": "2.4.1op1-1ubuntu4.7"
},
{
"binary_name": "cups-client",
"binary_version": "2.4.1op1-1ubuntu4.7"
},
{
"binary_name": "cups-common",
"binary_version": "2.4.1op1-1ubuntu4.7"
},
{
"binary_name": "cups-core-drivers",
"binary_version": "2.4.1op1-1ubuntu4.7"
},
{
"binary_name": "cups-daemon",
"binary_version": "2.4.1op1-1ubuntu4.7"
},
{
"binary_name": "cups-ipp-utils",
"binary_version": "2.4.1op1-1ubuntu4.7"
},
{
"binary_name": "cups-ppdc",
"binary_version": "2.4.1op1-1ubuntu4.7"
},
{
"binary_name": "cups-server-common",
"binary_version": "2.4.1op1-1ubuntu4.7"
},
{
"binary_name": "libcups2",
"binary_version": "2.4.1op1-1ubuntu4.7"
},
{
"binary_name": "libcups2-dev",
"binary_version": "2.4.1op1-1ubuntu4.7"
},
{
"binary_name": "libcupsimage2",
"binary_version": "2.4.1op1-1ubuntu4.7"
},
{
"binary_name": "libcupsimage2-dev",
"binary_version": "2.4.1op1-1ubuntu4.7"
}
],
"availability": "No subscription required"
}{
"binaries": [
{
"binary_name": "cups",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "cups-bsd",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "cups-client",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "cups-common",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "cups-core-drivers",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "cups-daemon",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "cups-ipp-utils",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "cups-ppdc",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "cups-server-common",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "libcups2",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "libcups2-dev",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "libcupscgi1",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "libcupscgi1-dev",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "libcupsimage2",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "libcupsimage2-dev",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "libcupsmime1",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "libcupsmime1-dev",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "libcupsppdc1",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
},
{
"binary_name": "libcupsppdc1-dev",
"binary_version": "2.1.3-4ubuntu0.11+esm4"
}
],
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}{
"binaries": [
{
"binary_name": "cups",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "cups-bsd",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "cups-client",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "cups-common",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "cups-core-drivers",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "cups-daemon",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "cups-ipp-utils",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "cups-ppdc",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "cups-server-common",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "libcups2",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "libcups2-dev",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "libcupscgi1",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "libcupsimage2",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "libcupsimage2-dev",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "libcupsmime1",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
},
{
"binary_name": "libcupsppdc1",
"binary_version": "2.2.7-1ubuntu2.10+esm2"
}
],
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro"
}