Logo
vulnerabilityCVE-2025-64524
Name
CVE-2025-64524
Source
NVD ( link)Debian ( link)
Description
cups-filters contains backends, filters, and other software required to get the cups printing service working on operating systems other than macos. In versions 2.0.1 and prior, a heap-buffer-overflow vulnerability in the rastertopclx filter causes the program to crash with a segmentation fault when processing maliciously crafted input data. This issue can be exploited to trigger memory corruption, potentially leading to arbitrary code execution. This issue has been patched via commit 956283c.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
cups-filters
Patched

Vulnerability Ratings#


3.3
CVSSv31
5.5
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
1.28.17
Patched
buildroot
master
1.28.17
Patched
yocto
kirkstone
1.28.11
Patched
yocto
master
2.0.1
Patched

Resolved with patches#


cups-filters (buildroot:2025.02.x)

#
Title
Author
Resolve
1
rastertopclx.c: Fix infinite loop caused by crafted file
Zdenek Dohnal <zdohnal@redhat.com>
CVE-2025-64524

cups-filters (buildroot:master)

#
Title
Author
Resolve
1
rastertopclx.c: Fix infinite loop caused by crafted file
Zdenek Dohnal <zdohnal@redhat.com>
CVE-2025-64524

cups-filters (yocto:kirkstone)

#
Title
Author
Resolve
1
rastertopclx.c: Fix infinite loop caused by crafted file
Zdenek Dohnal <zdohnal@redhat.com>
CVE-2025-64524

cups-filters (yocto:master)

#
Title
Author
Resolve
1
rastertopclx.c: Fix infinite loop caused by crafted file
Gyorgy Sarvari <skandigraun@gmail.com>
CVE-2025-64524

cups-filters (yocto:scarthgap)

#
Title
Author
Resolve
1
rastertopclx.c: Fix infinite loop caused by crafted file
Zdenek Dohnal <zdohnal@redhat.com>
CVE-2025-64524