CyberzSOC

Publication detail
← Back to advisories & guidance

2024-103: Critical Vulnerabilities in CUPS ↗ source

December 12, 2024 CERT-EU Advisory

Summary

By chaining the vulnerabilities (CVE-2024-47076, CVE-2024-47175, CVE-2024-47176 and CVE-2024-47177) together, an attacker could potentially achieve remote code execution [1]. Exploitation of these vulnerabilities is possible through the following chain of events: 1. Attacker advertises a malicious IPP server, thereby provisioning a malicious printer. 4. A potential victim attempts to print using the malicious device. 5. Attempted printing allows the attacker to execute arbitrary code on the victim’s machine.

News Coverage

No coverage found in monitored research blogs or news feeds.

CVEs Referenced in This Publication

CVECVSSAffected
CVE-2024-47076 8.6 High OpenPrinting libcupsfilters CUPS is a standards-based, open-source printing system, and `libcupsfilters` contains the code of the filters of the former `cups-filters` package as…
CVE-2024-47175 8.6 High OpenPrinting libppd CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFrom…
CVE-2024-47176 5.3 Medium OpenPrinting cups-browsed CUPS is a standards-based, open-source printing system, and `cups-browsed` contains network printing functionality including, but not limited to, aut…
CVE-2024-47177 — —

Extracted from the publication text. Each CVE links to its tracked detail page.

Vendors Named in This Publication

No KEV-catalogued vendors are named in this publication.