Several remotely exploitable bugs have been found in CUPS, which allow remote execution of arbitrary code.
Package | net-print/cups on all architectures |
---|---|
Affected versions | < 1.3.9-r1 |
Unaffected versions | >= 1.3.9-r1 |
CUPS is the Common Unix Printing System.
Several buffer overflows were found in:
A remote attacker could send specially crafted input to a vulnerable server, resulting in the remote execution of arbitrary code with the privileges of the user running the server.
None this time.
All CUPS users should upgrade to the latest version.
# emerge --sync # emerge --ask --oneshot --verbose ">=net-print/cups-1.3.9-r1"