ELSA-2026-0464

ELSA-2026-0464 - cups security update

Type:SECURITY
Impact:MODERATE
Release Date:2026-01-12

Description


[1:2.4.10-12.2]
- fix use-after-free reported by OSH

[1:2.4.10-12.1]
- RHEL-129721 CVE-2025-58436 cups: Slow client communication leads to a possible DoS attack
- RHEL-129715 CVE-2025-61915 cups: Local denial-of-service via cupsd.conf update and related issues


Related CVEs


CVE-2025-58436
CVE-2025-61915

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 10 (aarch64) cups-2.4.10-12.el10_1.2.src.rpmc412360a2dc323fe08d2f5320da919bd5467f0ec26bb0e60f12c93ee86cb7d1c-ol10_aarch64_appstream
cups-2.4.10-12.el10_1.2.src.rpmc412360a2dc323fe08d2f5320da919bd5467f0ec26bb0e60f12c93ee86cb7d1c-ol10_aarch64_baseos_latest
cups-2.4.10-12.el10_1.2.src.rpmc412360a2dc323fe08d2f5320da919bd5467f0ec26bb0e60f12c93ee86cb7d1c-ol10_aarch64_u1_baseos_patch
cups-2.4.10-12.el10_1.2.aarch64.rpme36715dc6484a7310b8194f30f785d275c9b4a98006c37a0de8d941eae5e74ad-ol10_aarch64_appstream
cups-client-2.4.10-12.el10_1.2.aarch64.rpm116e4da8e0f7f5c0ae88293efdb525ba03d26ef4a24623fef515938a89c99c93-ol10_aarch64_appstream
cups-devel-2.4.10-12.el10_1.2.aarch64.rpm82cb7e388ae1c8af2f1ded1e559bf5478dc59343aca3ca395a9a30f31128dd75-ol10_aarch64_appstream
cups-filesystem-2.4.10-12.el10_1.2.noarch.rpm757e4ded4daeef897a1d4c6bed8ba3c55f461ffada281b8ef9fbdd7df6b19b0b-ol10_aarch64_baseos_latest
cups-filesystem-2.4.10-12.el10_1.2.noarch.rpm757e4ded4daeef897a1d4c6bed8ba3c55f461ffada281b8ef9fbdd7df6b19b0b-ol10_aarch64_u1_baseos_patch
cups-ipptool-2.4.10-12.el10_1.2.aarch64.rpm578a22b7b3ffec0592f79ade3c7bf99e696f91f36441a6b8e7b52f30c8822789-ol10_aarch64_appstream
cups-libs-2.4.10-12.el10_1.2.aarch64.rpm70dd4222241e95f1d982587e75965ab2c954d0dc3c2574b0ac219150e1bcb85e-ol10_aarch64_baseos_latest
cups-libs-2.4.10-12.el10_1.2.aarch64.rpm70dd4222241e95f1d982587e75965ab2c954d0dc3c2574b0ac219150e1bcb85e-ol10_aarch64_u1_baseos_patch
cups-lpd-2.4.10-12.el10_1.2.aarch64.rpme11c8f19b608edbe839029baf56d5ca85fc8ee6baa9066e3dbb1bfe622da81dc-ol10_aarch64_appstream
cups-printerapp-2.4.10-12.el10_1.2.aarch64.rpma0095d7da164846ec09d70495c13635da78865bda4b012456058cd03b3db84a1-ol10_aarch64_appstream
Oracle Linux 10 (x86_64) cups-2.4.10-12.el10_1.2.src.rpmc412360a2dc323fe08d2f5320da919bd5467f0ec26bb0e60f12c93ee86cb7d1c-ol10_x86_64_appstream
cups-2.4.10-12.el10_1.2.src.rpmc412360a2dc323fe08d2f5320da919bd5467f0ec26bb0e60f12c93ee86cb7d1c-ol10_x86_64_baseos_latest
cups-2.4.10-12.el10_1.2.src.rpmc412360a2dc323fe08d2f5320da919bd5467f0ec26bb0e60f12c93ee86cb7d1c-ol10_x86_64_u1_baseos_patch
cups-2.4.10-12.el10_1.2.x86_64.rpm0fa2a04bcb4e6dc6cff2c98161b3140218b1c5cd08ae194bd865fc3e56e858b0-ol10_x86_64_appstream
cups-client-2.4.10-12.el10_1.2.x86_64.rpmbbc01a34b38fa6a19b82b49fa86b993e1043568bece89415e9310e3099eb7e79-ol10_x86_64_appstream
cups-devel-2.4.10-12.el10_1.2.x86_64.rpm3d98629c7a0fd04b247695c8b21502bcae60ffe709b84b979f5f6adf0edf9ea7-ol10_x86_64_appstream
cups-filesystem-2.4.10-12.el10_1.2.noarch.rpm757e4ded4daeef897a1d4c6bed8ba3c55f461ffada281b8ef9fbdd7df6b19b0b-ol10_x86_64_baseos_latest
cups-filesystem-2.4.10-12.el10_1.2.noarch.rpm757e4ded4daeef897a1d4c6bed8ba3c55f461ffada281b8ef9fbdd7df6b19b0b-ol10_x86_64_u1_baseos_patch
cups-ipptool-2.4.10-12.el10_1.2.x86_64.rpmb5da78d66ddacd6aa0a44247bb8285f474758cc1708e5047b395d4e19c16c195-ol10_x86_64_appstream
cups-libs-2.4.10-12.el10_1.2.x86_64.rpmbeca41545f82b742b727a9a05c8073203d3979567407844737470ae292fec2f7-ol10_x86_64_baseos_latest
cups-libs-2.4.10-12.el10_1.2.x86_64.rpmbeca41545f82b742b727a9a05c8073203d3979567407844737470ae292fec2f7-ol10_x86_64_u1_baseos_patch
cups-lpd-2.4.10-12.el10_1.2.x86_64.rpm52b29cd1f0d83bcfd66b9c93d171053b9acb0d1640a0b58d0aa14e3bcfa7efd6-ol10_x86_64_appstream
cups-printerapp-2.4.10-12.el10_1.2.x86_64.rpm4144fd22ae1eb213c03d3f58754b72a80865aed3d482f63f777686b5fb419c24-ol10_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete