Sploitus

CVE-2023-4504

2 known exploits for CVE-2023-4504

Due to failure in validating the length provided by an attacker-crafted PPD PostScript document, CUPS and libppd are susceptible to a heap-based buffer overflow and possibly code execution. This issue has been fixed in CUPS version 2.4.7, released in September of 2023.

Openprinting Cups
< 2.4.7
Openprinting Libppd
= 2.0
Fix
Available
CVSS 3.1
7.0 HIGH
EPSS
0.7% (49th percentile)
Weakness
CWE-122, CWE-787
NVD status
Modified
Published
2023-09-21
CVE-2023-4504 at NVD
Authoritative description, scoring and affected products

2 known exploits for CVE-2023-4504

Proof-of-concept code and exploit modules indexed by Sploitus