TEMP-0000000-ECC3E6

NameTEMP-0000000-ECC3E6
DescriptionGHSA-wjc4-qhjr-5m5x: Unauthenticated Denial of Service in cupsd via Repeated IPP Group Tags
SourceAutomatically generated temporary name. Not for external reference.

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
cups (PTS)bookworm, bookworm (security)2.4.2-3+deb12u9vulnerable
trixie2.4.10-3+deb13u2vulnerable
trixie (security)2.4.10-3+deb13u1vulnerable
forky, sid2.4.18-1vulnerable

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
cupssource(unstable)(unfixed)

Notes

https://github.com/OpenPrinting/cups/security/advisories/GHSA-wjc4-qhjr-5m5x
Fixed by: https://github.com/OpenPrinting/cups/commit/f3fb41912e4e29dbbbe7c4afd4fe48508af21bc0 (v2.4.20)

Search for package or bug name: Reporting problems