PT-2025-47612 · Unknown+5 · Cups-Filters+5

CVE-2025-64524

·

Publicado

2025-11-12

·

Atualizado

2026-06-22

CVSS v3.1

5.5

Média

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions cups-filters versions 2.0.1 and prior
Description cups-filters, which provides backends, filters, and other software for the cups printing service, contains a heap-buffer-overflow vulnerability in the rastertopclx filter. Processing maliciously crafted input data can cause the program to crash with a segmentation fault. This issue may allow for memory corruption, potentially leading to arbitrary code execution. The vulnerability requires additional permissions to install a printer with a PPD file calling the rastertopclx filter, which runs under the lp user.
Recommendations cups-filters versions prior to the version containing commit 956283c are affected.

Exploit

Correção

DoS

RCE

Heap Based Buffer Overflow

Memory Corruption

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2026-03142
CVE-2025-64524
DLA-4380-1
GHSA-RQ44-2Q5P-X3HV
MGASA-2025-0312
OESA-2025-2751
OESA-2026-1119
OESA-2026-1120
OESA-2026-1121
OESA-2026-1122
OESA-2026-1123
SUSE-SU-2025:4158-1
SUSE-SU-2025:4198-1
USN-7878-1
USN-7878-2

Produtos afetados

Debian
Linuxmint
Red Os
Suse
Ubuntu
Cups-Filters