AOSC-Dev / aosc-os-abbs

ABBS/ACBS tree for AOSC OS package metadata, build configuration, scripts, and patches
https://packages.aosc.io
GNU General Public License v2.0
100 stars 79 forks source link

cups-filters: CVE-2023-24805 #4625

Closed CamberLoid closed 5 months ago

CamberLoid commented 1 year ago

CVE

CVE-2023-24805

Advisories

Description

It was discovered that missing input sanitising in cups-filters, when using the Backend Error Handler (beh) backend to create an accessible network printer, may result in the execution of arbitrary commands.

Solutions

Fix via 1.28.17

jiegec commented 5 months ago

Update to 2.0.0