<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Sat, 03 Oct 2026 05:02:28 +0000</lastBuildDate>
    <item>
      <title>ALSA-2025:0083 — Low: cups security update</title>
      <link>https://cve.radiocsirt.org/vuln/alsa-2025:0083</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: cups, AlmaLinux:8: cups-client, AlmaLinux:8: cups-devel, AlmaLinux:8: cups-filesystem, AlmaLinux:8: cups-ipptool, AlmaLinux:8: cups-libs, AlmaLinux:8: cups-lpd&lt;/p&gt;
&lt;p&gt;The Common UNIX Printing System (CUPS) provides a portable printing layer for Linux, UNIX, and similar operating systems.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* cups: libppd: remote command injection via attacker controlled data in PPD file (CVE-2024-47175)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; AlmaLinux:8: cups, AlmaLinux:8: cups-client, AlmaLinux:8: cups-devel, AlmaLinux:8: cups-filesystem, AlmaLinux:8: cups-ipptool, AlmaLinux:8: cups-libs, AlmaLinux:8: cups-lpd&lt;/p&gt;
&lt;p&gt;The Common UNIX Printing System (CUPS) provides a portable printing layer for Linux, UNIX, and similar operating systems.&lt;/p&gt;
&lt;p&gt;Security Fix(es):&lt;/p&gt;
&lt;p&gt;* cups: libppd: remote command injection via attacker controlled data in PPD file (CVE-2024-47175)&lt;/p&gt;
&lt;p&gt;For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/alsa-2025:0083</guid>
    </item>
    <item>
      <title>bdu:2024-07645</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2024-07645</link>
      <description>bdu:2024-07645</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2024-07645</guid>
    </item>
    <item>
      <title>BELL-CVE-2024-47175</title>
      <link>https://cve.radiocsirt.org/vuln/bell-cve-2024-47175</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: cups, Alpaquita:stream: cups&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Alpaquita:23: cups, Alpaquita:stream: cups&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bell-cve-2024-47175</guid>
    </item>
    <item>
      <title>certfr-2024-ale-012 — &lt;span class="important-content"&gt;**[Mise à jour du 10 octobre 2024]**&lt;/span&gt;

Le 28 septembre 2024, Elastic Security Lab…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-ale-012</link>
      <description>certfr-2024-ale-012</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-ale-012</guid>
    </item>
    <item>
      <title>certfr-2024-avi-1081 — De multiples vulnérabilités ont été découvertes dans les produits IBM.Certaines d'entre elles permettent à un attaquant…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2024-avi-1081</link>
      <description>certfr-2024-avi-1081</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2024-avi-1081</guid>
    </item>
    <item>
      <title>cnvd-2024-39404</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2024-39404</link>
      <description>cnvd-2024-39404</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2024-39404</guid>
    </item>
    <item>
      <title>EUVD-2026-258675</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-258675</link>
      <description>EUVD-2026-258675</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-258675</guid>
    </item>
    <item>
      <title>fkie_cve-2024-47175</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2024-47175</link>
      <description>&lt;p&gt;CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2024-47175</guid>
    </item>
    <item>
      <title>OESA-2024-2222 — cups security update</title>
      <link>https://cve.radiocsirt.org/vuln/oesa-2024-2222</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: cups&lt;/p&gt;
&lt;p&gt;CUPS is the standards-based, open source printing system developed by Apple Inc. for UNIX®-like operating systems. CUPS uses the Internet Printing Protocol (IPP) to support printing to local and network printers..&#13;
&#13;
Security Fix(es):&#13;
&#13;
CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.(CVE-2024-47175)&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; openEuler:22.03-LTS-SP3: cups&lt;/p&gt;
&lt;p&gt;CUPS is the standards-based, open source printing system developed by Apple Inc. for UNIX®-like operating systems. CUPS uses the Internet Printing Protocol (IPP) to support printing to local and network printers..&#13;
&#13;
Security Fix(es):&#13;
&#13;
CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.(CVE-2024-47175)&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/oesa-2024-2222</guid>
    </item>
    <item>
      <title>openSUSE-SU-2025:15563-1 — cups-filters-1.28.17-5.1 on GA media</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2025:15563-1</link>
      <description>&lt;p&gt;cups-filters-1.28.17-5.1 on GA media&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;cups-filters-1.28.17-5.1 on GA media&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2025:15563-1</guid>
    </item>
    <item>
      <title>RHSA-2024:7461 — Red Hat Security Advisory: cups-filters security update</title>
      <link>https://cve.radiocsirt.org/vuln/rhsa-2024:7461</link>
      <description>&lt;p&gt;cups-filters: libcupsfilters: `cfGetPrinterAttributes` API does not perform sanitization on returned IPP attributes cups: libppd: remote command injection via attacker controlled data in PPD file cups-browsed: cups-browsed binds on UDP INADDR_ANY:631 trusting any packet from any source cups-browsed: cups-filters: cups-browsed vulnerable to DDoS amplification attack&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;cups-filters: libcupsfilters: `cfGetPrinterAttributes` API does not perform sanitization on returned IPP attributes cups: libppd: remote command injection via attacker controlled data in PPD file cups-browsed: cups-browsed binds on UDP INADDR_ANY:631 trusting any packet from any source cups-browsed: cups-filters: cups-browsed vulnerable to DDoS amplification attack&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/rhsa-2024:7461</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2024-47175</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-47175</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: cups, Ubuntu:Pro:18.04:LTS: cups, Ubuntu:20.04:LTS: cups, Ubuntu:22.04:LTS: cups, Ubuntu:24.04:LTS: cups, Ubuntu:24.04:LTS: libppd&lt;/p&gt;
&lt;p&gt;CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:Pro:16.04:LTS: cups, Ubuntu:Pro:18.04:LTS: cups, Ubuntu:20.04:LTS: cups, Ubuntu:22.04:LTS: cups, Ubuntu:24.04:LTS: cups, Ubuntu:24.04:LTS: libppd&lt;/p&gt;
&lt;p&gt;CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2024-47175</guid>
    </item>
    <item>
      <title>WID-SEC-W-2024-2240 — CUPS: Mehrere Schwachstellen ermöglichen Ausführung von beliebigem Programmcode</title>
      <link>https://cve.radiocsirt.org/vuln/wid-sec-w-2024-2240</link>
      <description>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in CUPS ausnutzen, um beliebigen Programmcode mit den Rechten des Dienstes auszuführen und um Informationen offenzulegen.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in CUPS ausnutzen, um beliebigen Programmcode mit den Rechten des Dienstes auszuführen und um Informationen offenzulegen.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/wid-sec-w-2024-2240</guid>
    </item>
  </channel>
</rss>
