Alerts This Week
Warning Icon 1 758
Alerts This Week
Warning Icon 1 758

Mageia 8 MGASA-2023-0198 Moderate: CUPS Heap Overflow DoS Risk

mageia
Calendar Grey June 15, 2023
Dist Mageia Esm H88
Memory corruption vulnerability in CUPS poses risk of remote exploitation, potentially leading to denial-of-service. Urgent patch required for Mageia 8 installations.
A heap buffer overflow vulnerability would allow a remote attacker to launch a denial of service (DoS) attack

Summary

A heap buffer overflow vulnerability would allow a remote attacker to launch a denial of service (DoS) attack. A buffer overflow vulnerability in the function 'format_log_line' could allow remote attackers to cause a DoS on the affected system. Exploitation of the vulnerability can be triggered when the configuration file 'cupsd.conf' sets the value of loglevel to 'DEBUG'. (CVE-2023-32324)

References

- https://bugs.mageia.org/show_bug.cgi?id=31987

- https://www.openwall.com/lists/oss-security/2023/06/01/1

- https://www.cve.org/CVERecord?id=CVE-2023-32324

Resolution

SRPMS

- 8/core/cups-2.3.3op2-1.2.mga8

Publication date: 15 Jun 2023
URL: https://advisories.mageia.org/MGASA-2023-0198.html
Type: security
CVE: CVE-2023-32324

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here