ELA-1198-1 cups security update

stronger validation of input data from external printers

2024-10-06
Packagecups
Version2.2.10-6+deb10u11 (buster)
Related CVEs CVE-2024-47175


An issue has been found in cups, the Common UNIX Printing System(tm). This update introduces stronger validations of input data from external printers.

Please be aware that now bugs in the firmware of the printer might be detected. In case of problems, that should appear in the error.log, please update this firmware first.

This ELA also contains an update of CVE-2024-35235, where problems could arise when only domain sockets are used to send data to the printer.



For Debian 10 buster, these problems have been fixed in version 2.2.10-6+deb10u11.

We recommend that you upgrade your cups packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.