CVE 9.9 is manjaro impacted by this?

Of course you can stop and remove cups … but the provided ‘chatgpt’ instructions are silly.

For example … no need for sudo with systemctl. Also why use stop then disable instead of disable --now ?

Furthermore … thats not what the page actually proposes for remediation…

As to this …

Ok so since no links were shared I hunted down the CVEs that do exist now.

https://www.cve.org/CVERecord?id=CVE-2024-47176

Affects cups-browsed v. 2.0.1 **

https://www.cve.org/CVERecord?id=CVE-2024-47076

Affects libcupsfilters v. <= 2.1b1 *

https://www.cve.org/CVERecord?id=CVE-2024-47175

Affects libppd v. <= 2.1b1

https://www.cve.org/CVERecord?id=CVE-2024-47177

Affects cups-filters v. <= 2.0.1

Yes.
But it depends on the branch and the system.
In my case I dont have cups-browsed installed, etc.


* - This is fixed with 2.0.0-3.

** - This is mitigated with 2.0.1-2.

2 Likes