vulnerability

Amazon Linux AMI 2: CVE-2023-32324: Security patch for cups (ALAS-2023-2184)

Severity
5
CVSS
(AV:L/AC:M/Au:N/C:N/I:N/A:C)
Published
Jun 1, 2023
Added
Aug 9, 2023
Modified
Jan 28, 2025

Description

OpenPrinting CUPS is an open source printing system. In versions 2.4.2 and prior, a heap buffer overflow vulnerability would allow a remote attacker to launch a denial of service (DoS) attack. A buffer overflow vulnerability in the function `format_log_line` could allow remote attackers to cause a DoS on the affected system. Exploitation of the vulnerability can be triggered when the configuration file `cupsd.conf` sets the value of `loglevel `to `DEBUG`. No known patches or workarounds exist at time of publication.

Solution(s)

amazon-linux-ami-2-upgrade-cupsamazon-linux-ami-2-upgrade-cups-clientamazon-linux-ami-2-upgrade-cups-debuginfoamazon-linux-ami-2-upgrade-cups-develamazon-linux-ami-2-upgrade-cups-filesystemamazon-linux-ami-2-upgrade-cups-ipptoolamazon-linux-ami-2-upgrade-cups-libsamazon-linux-ami-2-upgrade-cups-lpd
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.