PT-2025-47612 · Unknown+5 · Cups-Filters+5
CVE-2025-64524
·
Publicado
2025-11-12
·
Atualizado
2026-06-22
CVSS v3.1
5.5
Média
| Vetor | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
cups-filters versions 2.0.1 and prior
Description
cups-filters, which provides backends, filters, and other software for the cups printing service, contains a heap-buffer-overflow vulnerability in the rastertopclx filter. Processing maliciously crafted input data can cause the program to crash with a segmentation fault. This issue may allow for memory corruption, potentially leading to arbitrary code execution. The vulnerability requires additional permissions to install a printer with a PPD file calling the rastertopclx filter, which runs under the
lp user.Recommendations
cups-filters versions prior to the version containing commit 956283c are affected.
Exploit
Correção
DoS
RCE
Heap Based Buffer Overflow
Memory Corruption
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Debian
Linuxmint
Red Os
Suse
Ubuntu
Cups-Filters