CVE-2024-47175

Updated: 2026-02-27 01:55:01.544834

Description:

CUPS is a standards-based, open-source printing system, and `libppd` can be used for legacy PPD file support. The `libppd` function `ppdCreatePPDFromIPP2` does not sanitize IPP attributes when creating the PPD buffer. When used in combination with other functions such as `cfGetPrinterAttributes5`, can result in user controlled input and ultimately code execution via Foomatic. This vulnerability can be part of an exploit chain leading to remote code execution (RCE), as described in CVE-2024-47176.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0.0
CVSS Version 3.x CRITICAL 9.8

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU cups-filters 1.28.7 9.8 CRITICAL Released CLSA-2025:1747430870 2025-05-18 05:08:13
AlmaLinux 9.2 ESU cups 2.3.3op2 9.8 CRITICAL Released CLSA-2025:1741215546 2025-03-06 22:08:18
CentOS 7 ELS cups 1.6.3 9.8 CRITICAL Not Vulnerable 2025-11-05 05:01:16 Not affected: CVE-2024-47175 targets OpenPrinting’s libppd (packaged with cups-filters), specifica...
CentOS 8.4 ELS cups 2.2.6 9.8 CRITICAL Released CLSA-2025:1741636664 2025-03-10 22:58:54 not vulnerable
CentOS 8.5 ELS cups 2.2.6 9.8 CRITICAL Released CLSA-2025:1741637055 2025-03-11 23:12:13
CentOS Stream 8 ELS cups 2.2.6 9.8 CRITICAL Released CLSA-2025:1741635651 2025-03-11 23:12:12
CloudLinux 7 ELS cups 1.6.3 9.8 CRITICAL Not Vulnerable 2025-11-05 05:01:14 Not affected: CVE-2024-47175 targets OpenPrinting’s libppd (packaged with cups-filters), specifica...
Oracle Linux 7 ELS cups 1.6.3 9.8 CRITICAL Not Vulnerable 2025-11-05 07:01:12 Not affected: this issue targets the OpenPrinting libppd implementation (ppdCreatePPDFromIPP2), and ...
RHEL 7 ELS cups 1.6.3 9.8 CRITICAL Not Vulnerable 2025-11-05 05:01:15 Not affected: CVE-2024-47175 targets OpenPrinting’s libppd (packaged with cups-filters), specifica...
Ubuntu 16.04 ELS cups 2.1.3-4 9.8 CRITICAL Released CLSA-2025:1741216285 2025-03-06 22:08:16
Total: 11