cups-browsed in cups-filters before 1.0.53 allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging a malformed cups-browsed.conf BrowseAllow directive that is interpreted as granting browse access to all IP addresses.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Cups-filters | Linuxfoundation | * | 1.0.52 (including) |
Red Hat Enterprise Linux 7 | RedHat | cups-filters-0:1.0.35-15.el7_0.1 | * |
Cups-filters | Ubuntu | trusty | * |
Cups-filters | Ubuntu | upstream | * |