Linuxsecurity
Moderate Vulnerabilities in SUSE CUPS Filters Affecting Print Jobs
Article Content
SUSE has released updates addressing two vulnerabilities in cups-filters, identified as CVE-2026-64611 and CVE-2026-64612. CVE-2026-64611 allows an attacker controlling an IEEE-1284 device ID to cause an infinite loop in the system, while CVE-2026-64612 enables an authenticated client to abort the CUPS filter process by submitting a malformed PNG image. Both vulnerabilities are rated moderate in severity. The issues affect various SUSE Linux Enterprise Server versions, including 12 SP5 and 15 SP7. Administrators are advised to apply the patches using SUSE's recommended installation methods. The vulnerabilities were published on July 23 and July 20, 2026, respectively. Current status indicates that these vulnerabilities have been patched, and no active exploitation has been reported.
Key Points: • Two moderate vulnerabilities in SUSE cups-filters have been patched. • CVE-2026-64611 can cause an infinite loop, while CVE-2026-64612 can abort the CUPS filter process. • Affected systems include SUSE Linux Enterprise Server 12 SP5 and 15 SP7.
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.