Moderate Vulnerability in Oracle Linux cups-filters Affects Multiple Versions

Moderate Vulnerability in Oracle Linux cups-filters Affects Multiple Versions

First seen 25 Aug 2026, 10:17 UTC Linuxsecurity 45.9

Article Content

Browse articles
ThreatCluster

Oracle has released advisories for a moderate vulnerability (CVE-2026-64612) affecting cups-filters in both Oracle Linux 8 and 9. The flaw allows improper handling of libpng errors, which could lead to process aborts when dealing with malformed PNG files. Affected versions include cups-filters 1.20.0-36.0.1 for Oracle Linux 8 and 1.28.7-27.0.1 for Oracle Linux 9. Users are advised to update to the latest versions to mitigate the risk. The vulnerability was published on July 20, 2026, and is classified as moderate in severity. There are no reports of active exploitation in the wild at this time. Both advisories provide links to the necessary RPM packages for patching. Security professionals should prioritize applying these updates to affected systems.

Key Points: • CVE-2026-64612 affects cups-filters in Oracle Linux 8 and 9. • The vulnerability allows process aborts from malformed PNG files. • Users should update to the latest cups-filters versions to mitigate risks.

Timeline

2026-07-20
CVE-2026-64612 published
Oracle disclosed a moderate vulnerability in cups-filters affecting multiple Linux versions.
Linuxsecurity
2026-08-25
Advisories released for Oracle Linux 8 and 9
Oracle published advisories detailing the cups-filters vulnerability and recommended updates for affected systems.
Linuxsecurity