<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-03T04:10:42.008810+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2026:56965</id>
    <title>ALSA-2026:56965 — Moderate: libcupsfilters security update</title>
    <updated>2026-10-03T04:10:42.367439+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:10: libcupsfilters</p>
<p>Libcupsfilters provides a library, which implements common functions used in cups-browsed daemon and printing filters, and additional files as banner templates and character sets. The filters are used in CUPS daemon and in printer applications.</p>
<p>Security Fix(es):</p>
<p>* libcupsfilters: cups-filters: libcupsfilters: CPU exhaustion via infinite loop in cfIEEE1284NormalizeMakeModel() (CVE-2026-64611)
  * libcupsfilters: cups-filters: libcupsfilters: CUPS image filter process abort via malformed PNG (CVE-2026-64612)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2026:56965"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-357956</id>
    <title>EUVD-2026-357956</title>
    <updated>2026-10-03T04:10:42.367501+00:00</updated>
    <content>EUVD-2026-357956</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-357956"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2026-64612</id>
    <title>fkie_cve-2026-64612</title>
    <updated>2026-10-03T04:10:42.367518+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in libcupsfilters and cups-filters. The PNG image reading function creates a libpng reader without installing an error recovery handler, causing the CUPS image filter process to abort when processing a malformed PNG file. An unauthenticated attacker could exploit this by submitting a specially crafted PNG print job, leading to denial of service of the in-flight print job.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2026-64612"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ghsa-qfw8-cr83-3h6j</id>
    <title>GHSA-qfw8-cr83-3h6j</title>
    <updated>2026-10-03T04:10:42.367542+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>A flaw was found in libcupsfilters and cups-filters. The PNG image reading function creates a libpng reader without installing an error recovery handler, causing the CUPS image filter process to abort when processing a malformed PNG file. An unauthenticated attacker could exploit this by submitting a specially crafted PNG print job, leading to denial of service of the in-flight print job.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ghsa-qfw8-cr83-3h6j"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2026-3248</id>
    <title>OESA-2026-3248 — cups-filters security update</title>
    <updated>2026-10-03T04:10:42.367558+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:24.03-LTS-SP3: cups-filters, openEuler:24.03-LTS-SP4: cups-filters, openEuler:20.03-LTS-SP4: cups-filters, openEuler:22.03-LTS-SP4: cups-filters, openEuler:24.03-LTS-SP1: cups-filters</p>
<p>This project provides backends, filters, and other software that was once part of the core CUPS distribution but is no longer maintained by Apple Inc. In addition it contains additional filters and software developed independently of Apple, especially filters for the PDF-centric printing workflow introduced by OpenPrinting and a daemon to browse Bonjour broadcasts of remote CUPS printers to make these printers available locally and to provide backward compatibility to the old CUPS broadcasting and browsing of CUPS 1.5.x and older.

Security Fix(es):</p>
<p>A flaw was found in libcupsfilters and cups-filters. The PNG image reading function creates a libpng reader without installing an error recovery handler, causing the CUPS image filter process to abort when processing a malformed PNG file. An unauthenticated attacker could exploit this by submitting a specially crafted PNG print job, leading to denial of service of the in-flight print job.(CVE-2026-64612)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2026-3248"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2026:11681-1</id>
    <title>openSUSE-SU-2026:11681-1 — cups-filters-1.28.17-9.1 on GA media</title>
    <updated>2026-10-03T04:10:42.367592+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>cups-filters-1.28.17-9.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2026:11681-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rlsa-2026:56965</id>
    <title>RLSA-2026:56965 — Moderate: libcupsfilters security update</title>
    <updated>2026-10-03T04:10:42.367610+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Rocky Linux:10: libcupsfilters</p>
<p>Libcupsfilters provides a library, which implements common functions used in cups-browsed daemon and printing filters, and additional files as banner templates and character sets. The filters are used in CUPS daemon and in printer applications.</p>
<p>Security Fix(es):</p>
<p>* libcupsfilters: cups-filters: libcupsfilters: CPU exhaustion via infinite loop in cfIEEE1284NormalizeMakeModel() (CVE-2026-64611)</p>
<p>* libcupsfilters: cups-filters: libcupsfilters: CUPS image filter process abort via malformed PNG (CVE-2026-64612)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rlsa-2026:56965"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2026:23695-1</id>
    <title>SUSE-SU-2026:23695-1 — Security update for libcupsfilters</title>
    <updated>2026-10-03T04:10:42.367633+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for libcupsfilters</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2026:23695-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-64612</id>
    <title>UBUNTU-CVE-2026-64612</title>
    <updated>2026-10-03T04:10:42.367648+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: cups-filters, Ubuntu:Pro:18.04:LTS: cups-filters, Ubuntu:Pro:20.04:LTS: cups-filters, Ubuntu:22.04:LTS: cups-filters, Ubuntu:24.04:LTS: cups-filters, Ubuntu:24.04:LTS: libcupsfilters, Ubuntu:26.04:LTS: cups-filters, Ubuntu:26.04:LTS: libcupsfilters</p>
<p>A flaw was found in libcupsfilters and cups-filters. The PNG image reading function creates a libpng reader without installing an error recovery handler, causing the CUPS image filter process to abort when processing a malformed PNG file. An unauthenticated attacker could exploit this by submitting a specially crafted PNG print job, leading to denial of service of the in-flight print job.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2026-64612"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2423</id>
    <title>WID-SEC-W-2026-2423 — CUPS (libcupsfilters, cups-filters): Schwachstelle ermöglicht Denial of Service</title>
    <updated>2026-10-03T04:10:42.367677+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann eine Schwachstelle in CUPS ausnutzen, um einen Denial of Service Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2026-2423"/>
  </entry>
</feed>
