+ CUPS filters: Remote Code Execution
+ A vulnerability has been found in CUPS filters where remote code execution is possible via the beh filter.
+ cups-filters
+ 2024-01-05
+ 2024-01-05
+ 906944
+ remote
+
+
+ 1.28.17-r2
+ 1.28.17-r2
+
+
+
+ CUPS filters provides backends, filters, and other software that was once part of the core CUPS distribution.
+
+
+ A vulnerability has been discovered in cups-filters. Please review the CVE identifier referenced below for details.
+
+
+ If you use beh to create an accessible network printer, this security vulnerability can cause remote code execution.
+
+
+ There is no known workaround at this time.
+
+
+ All cups-filters users should upgrade to the latest version:
+
+
+ # emerge --sync
+ # emerge --ask --oneshot --verbose ">=net-print/cups-filters-1.28.17-r2"
+
+
+
+ CVE-2023-24805
+ GHSA-gpxc-v2m8-fr3x
+
+ graaff
+ graaff
+
\ No newline at end of file
diff --git a/metadata/glsa/glsa-202401-07.xml b/metadata/glsa/glsa-202401-07.xml
new file mode 100644
index 000000000000..ff293d52a518
--- /dev/null
+++ b/metadata/glsa/glsa-202401-07.xml
@@ -0,0 +1,44 @@
+
+
+