rpm package
suse/cups-filters&distro=SUSE Linux Enterprise Module for Basesystem 15 SP6
pkg:rpm/suse/cups-filters&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP6
Vulnerabilities (7)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2025-64524 | Low | 3.3 | < 1.25.0-150200.3.25.1 | 1.25.0-150200.3.25.1 | Nov 20, 2025 | cups-filters contains backends, filters, and other software required to get the cups printing service working on operating systems other than macos. In versions 2.0.1 and prior, a heap-buffer-overflow vulnerability in the rastertopclx filter causes the program to crash with a seg | |
| CVE-2025-64503 | Med | 4.0 | < 1.25.0-150200.3.25.1 | 1.25.0-150200.3.25.1 | Nov 12, 2025 | cups-filters contains backends, filters, and other software required to get the cups printing service working on operating systems other than macos. In cups-filters prior to 1.28.18, by crafting a PDF file with a large `MediaBox` value, an attacker can cause CUPS-Filter 1.x’s `pd | |
| CVE-2025-57812 | Low | 3.7 | < 1.25.0-150200.3.25.1 | 1.25.0-150200.3.25.1 | Nov 12, 2025 | CUPS is a standards-based, open-source printing system, and `libcupsfilters` contains the code of the filters of the former `cups-filters` package as library functions to be used for the data format conversion tasks needed in Printer Applications. In CUPS-Filters versions up to a | |
| CVE-2024-47850 | Hig | 7.5 | < 1.25.0-150200.3.19.2 | 1.25.0-150200.3.19.2 | Oct 4, 2024 | CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and port in response to a single IPP UDP packet requesting a printer to be added, a different vulnerability than CVE-2024-47176. (The request is meant to probe the new printer but can be use | |
| CVE-2024-47176 | Med | 5.3 | < 1.25.0-150200.3.16.1 | 1.25.0-150200.3.16.1 | Sep 26, 2024 | CUPS is a standards-based, open-source printing system, and `cups-browsed` contains network printing functionality including, but not limited to, auto-discovering print services and shared printers. `cups-browsed` binds to `INADDR_ANY:631`, causing it to trust any packet from any | |
| CVE-2024-47175 | Hig | 8.6 | < 1.25.0-150200.3.22.1 | 1.25.0-150200.3.22.1 | Sep 26, 2024 | CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPr | |
| CVE-2024-47076 | Hig | 8.6 | < 1.25.0-150200.3.19.2 | 1.25.0-150200.3.19.2 | Sep 26, 2024 | CUPS is a standards-based, open-source printing system, and `libcupsfilters` contains the code of the filters of the former `cups-filters` package as library functions to be used for the data format conversion tasks needed in Printer Applications. The `cfGetPrinterAttributes5` fu |
- affected < 1.25.0-150200.3.25.1fixed 1.25.0-150200.3.25.1
cups-filters contains backends, filters, and other software required to get the cups printing service working on operating systems other than macos. In versions 2.0.1 and prior, a heap-buffer-overflow vulnerability in the rastertopclx filter causes the program to crash with a seg
- affected < 1.25.0-150200.3.25.1fixed 1.25.0-150200.3.25.1
cups-filters contains backends, filters, and other software required to get the cups printing service working on operating systems other than macos. In cups-filters prior to 1.28.18, by crafting a PDF file with a large `MediaBox` value, an attacker can cause CUPS-Filter 1.x’s `pd
- affected < 1.25.0-150200.3.25.1fixed 1.25.0-150200.3.25.1
CUPS is a standards-based, open-source printing system, and `libcupsfilters` contains the code of the filters of the former `cups-filters` package as library functions to be used for the data format conversion tasks needed in Printer Applications. In CUPS-Filters versions up to a
- affected < 1.25.0-150200.3.19.2fixed 1.25.0-150200.3.19.2
CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and port in response to a single IPP UDP packet requesting a printer to be added, a different vulnerability than CVE-2024-47176. (The request is meant to probe the new printer but can be use
- affected < 1.25.0-150200.3.16.1fixed 1.25.0-150200.3.16.1
CUPS is a standards-based, open-source printing system, and `cups-browsed` contains network printing functionality including, but not limited to, auto-discovering print services and shared printers. `cups-browsed` binds to `INADDR_ANY:631`, causing it to trust any packet from any
- affected < 1.25.0-150200.3.22.1fixed 1.25.0-150200.3.22.1
CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPr
- affected < 1.25.0-150200.3.19.2fixed 1.25.0-150200.3.19.2
CUPS is a standards-based, open-source printing system, and `libcupsfilters` contains the code of the filters of the former `cups-filters` package as library functions to be used for the data format conversion tasks needed in Printer Applications. The `cfGetPrinterAttributes5` fu