|
|
Log in / Subscribe / Register

Ubuntu alert USN-7912-1 (cups)

From:  noreply+usn-bot@canonical.com
To:  ubuntu-security-announce@lists.ubuntu.com
Subject:  [USN-7912-1] CUPS vulnerability
Date:  Thu, 04 Dec 2025 17:55:34 +0000
Message-ID:  <E1vRDYE-0004Of-2R@lists.ubuntu.com>

========================================================================== Ubuntu Security Notice USN-7912-1 December 04, 2025 cups vulnerability ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 25.10 - Ubuntu 25.04 - Ubuntu 24.04 LTS - Ubuntu 22.04 LTS Summary: CUPS could be made to stop responding if it received specially crafted network traffic. Software Description: - cups: Common UNIX Printing System(tm) Details: Johannes Meixner and Paul Zirnik discovered that CUPS incorrectly handled clients that send messages slowly. A remote attacker could possibly use this issue to cause CUPS to stop responding, resulting in a denial of service. (CVE-2025-58436) In addition, this update fixes a regression introduced in USN-7897-1 which resulted in certain invalid configuration file directives to cause the CUPS daemon to fail to start. Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 25.10 cups 2.4.12-0ubuntu3.5 cups-daemon 2.4.12-0ubuntu3.5 Ubuntu 25.04 cups 2.4.12-0ubuntu1.6 cups-daemon 2.4.12-0ubuntu1.6 Ubuntu 24.04 LTS cups 2.4.7-1.2ubuntu7.9 cups-daemon 2.4.7-1.2ubuntu7.9 Ubuntu 22.04 LTS cups 2.4.1op1-1ubuntu4.16 cups-daemon 2.4.1op1-1ubuntu4.16 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-7912-1 CVE-2025-58436, https://launchpad.net/bugs/2133207 Package Information: https://launchpad.net/ubuntu/+source/cups/2.4.12-0ubuntu3.5 https://launchpad.net/ubuntu/+source/cups/2.4.12-0ubuntu1.6 https://launchpad.net/ubuntu/+source/cups/2.4.7-1.2ubuntu7.9 https://launchpad.net/ubuntu/+source/cups/2.4.1op1-1ubunt...


Attachment: signature.asc (type=application/pgp-signature)

-----BEGIN PGP SIGNATURE----- iQIzBAABCgAdFiEE+8neBLO2Hp/ppPlOcpJm3tlzhgEFAmkxytAACgkQcpJm3tlz hgEEiBAAtXLUKByYfz1dVtY8FXq+l84wXN2SVR4rLTUbivo6c1fRqxEj9AxSPtyG C67X9L9uOvrjJuMOAKvSYmgt47EqmlBm3ORE/jPs3NcpU+KUrVrBc6ewpB8g2Owm kS/tFPq7oiENvbkaCsie3YxQLYRvnsyzfzqgpujRjvkfv2IVPcaQPYKSnQOQI3rU ckD8qYDYdi+ZdgFdASikVRnzxRwcIRWmn5GP3c7Rdvf8N27P7OD6yiIaw8qZ95fE y1zDKcFMQAoBSqbhiw4ZbDrwPnl8jsfI7ji4ocbownB111VNAjTpg1ykxq0HPP25 iIpsJyaWAEYPNg7zZHf83R2rHjLTJiIwZ/qyiOOdmDK0VHUpwaIIE5PfjnlSmd/W YdSrE/jPwyP2iMrraj7ZxQJ3ns+qwx5gMFQAnDn3c1wU6L4CGTPi/MNp1l1WMgDK QMulGXP/iThtM3s9pJA9d14AycuWH626GRXvQ7MX4IxFek47oR+xXb1Yi6oB5A4I DUGCHcHSOdMASLbqdForiBQzJJt7JnQ1U4ODsrP2pj0WrwdjGDXY2+9OaaaJIHzO RTXxvXrIBPaBHEEtWYj7rxhw9tfve26TvZU1fc75+3xmiqMfpaReEz5NfWqJQxhh 8PxtxUHAQRUMHPx+nGXMMoWQn0juOCdeg4Lyq7fxsq8XKnzBzvw= =fRU0 -----END PGP SIGNATURE-----


to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds