A cups security update has been released for Debian GNU/Linux 8 and 9 Extended LTS to address a buffer overflow vulnerability.
ELA-860-1 cups security update
Package : cups
ELA-860-1 cups security update
Version : 1.7.5-11+deb8u10 (jessie), 2.2.1-8+deb9u9 (stretch)
Related CVEs :
CVE-2023-32324
An issue has been found in cups, the Common UNIX Printing System.
Due to a buffer overflow vulnerability in the function format_log_line()
a remote attackers could cause a denial-of-service(DoS). The vulnerability
can be triggered when the configuration file cupsd.conf sets the value of
“loglevel” to “DEBUG”.