Cups Filters

Vendor:

First CVE: Mar 14, 2014 · Active for 12 years

14
Total CVEs
More Total CVEs than 91% of tracked products
3.5
Avg CVEs / Year
Higher CVE frequency than 82% of tracked products
6.7
Avg CVSS
Higher Avg CVSS than 34% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Cups Filters over time

Volume of CVEsAvg CVSS Base Score
First CVE
Mar 14, 2014
12 years ago
Most Recent CVE
May 17, 2023
1,166 days ago

CVE Severity & Scoring

Cups Filters14 CVEs
All CVEs352,719 CVEs
MediumHigh
Attack Vector
Local0 (0.0%)
Network2 (14.3%)
Unknown12 (85.7%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low2 (14.3%)
High0 (0.0%)
Unknown12 (85.7%)
User Interaction
None2 (14.3%)
Unknown12 (85.7%)
Required0 (0.0%)
Privileges Required
Low1 (7.1%)
High0 (0.0%)
None1 (7.1%)
Unknown12 (85.7%)

Top CVEs

Signals from CVEs in this product scope (14 CVEs).

14 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
cups-filters contains backends, filters, and other software required to get the cups printing service working on operating systems other than macos. If you use the Backend Error Ha
May 17, 20238.829NONO
Incomplete blacklist vulnerability in util.c in foomatic-rip in cups-filters 1.0.42 before 1.2.0 and in foomatic-filters in Foomatic 4.0.x allows remote attackers to execute arbitr
Dec 17, 20157.523NONO
Incomplete blacklist vulnerability in util.c in foomatic-rip in cups-filters 1.0.42 before 1.4.0 and in foomatic-filters in Foomatic 4.0.x allows remote attackers to execute arbitr
Apr 14, 20167.322NONO
Integer overflow in filter/texttopdf.c in texttopdf in cups-filters before 1.0.71 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code vi
Jul 14, 20157.522NONO
Heap-based buffer overflow in the WriteProlog function in filter/texttopdf.c in texttopdf in cups-filters before 1.0.70 allows remote attackers to cause a denial of service (crash)
Jul 14, 20157.522NONO
Heap-based buffer overflow in the pdftoopvp filter in CUPS and cups-filters before 1.0.47 allows remote attackers to execute arbitrary code via a crafted PDF file.
Mar 14, 20146.822NONO
The generate_local_queue function in utils/cups-browsed.c in cups-browsed in cups-filters before 1.0.53 allows remote IPP printers to execute arbitrary commands via shell metachara
Jun 22, 20145.821NONO
cups-browsed in cups-filters 1.0.41 before 1.0.51 allows remote IPP printers to execute arbitrary commands via shell metacharacters in the (1) model or (2) PDL, related to "System
Apr 17, 20148.321NONO
The remove_bad_chars function in utils/cups-browsed.c in cups-filters before 1.0.66 allows remote IPP printers to execute arbitrary commands via consecutive shell metacharacters in
Mar 24, 20157.520NONO
The process_browse_data function in utils/cups-browsed.c in cups-browsed in cups-filters before 1.0.53 allows remote attackers to cause a denial of service (out-of-bounds read and
Jun 22, 20144.319NONO

Exploit Exposure

Signals from CVEs in this product scope (14 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (14 CVEs).

Media Mentions

Signals from CVEs in this product scope (14 CVEs).

Top CNAs Publishing CVEs For Cups Filters

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
2.018.83.7%00
1.3.017.35.3%00
1.2.017.35.3%00
1.1.027.47.7%00
1.0.936.02.2%00
1.0.836.02.2%00
1.0.7627.47.7%00
1.0.7527.47.7%00
1.0.7427.47.7%00
1.0.7327.47.7%00
1.0.7227.47.7%00
1.0.7127.47.7%00
1.0.7027.47.7%00
1.0.736.02.2%00
1.0.6927.47.7%00
1.0.6827.47.7%00
1.0.6727.47.7%00
1.0.6627.47.7%00
1.0.6527.47.7%00
1.0.6427.47.7%00