CVE-2024-47177
CVSS 3.1 Score 9 of 10 (high)
Details
Published Sep 26, 2024
Updated: Sep 30, 2024
CWE ID 77
Summary
CVE-2024-47177 is a new vulnerability affecting CUPS (Common Unix Printing System) and its cups-filters component. This open-source printing system, used on non-Mac OS systems, is vulnerable to remote command execution due to a flaw in the `FoomaticRIPCommandLine` function. An attacker can exploit this vulnerability by supplying malicious input via a PPD (Printer Description) file, leading to arbitrary command execution. When coupled with the logic bugs described in CVE-2024-47176, the potential for a successful remote attack is significantly increased.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- cups-filters