CVE-2023-32360: Infoleak
A vulnerability was found in OpenPrinting CUPS. Unauthorized users are permitted to fetch documents over local or remote networks, leading to confidentiality breach.
Other sources
Accessibility. A privacy issue was addressed with improved private data redaction for log entries.
— Apple
Accessibility. This issue was addressed with improved checks.
— Apple
Accounts. A permissions issue was addressed with improved redaction of sensitive information.
— Apple
AMD. A buffer overflow issue was addressed with improved memory handling.
— Apple
An authentication issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, macOS Ventura 13.4. An unauthenticated user may be able to access recently printed documents.
— Ubuntu
Credit
Affected Software
Remediation
Information
Event History
Parent advisories
This vulnerability appears in the following advisories.
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2023-32388
- CVE-2023-28191
- CVE-2023-32411
- CVE-2023-32383
- CVE-2023-32386
- CVE-2023-28181
- CVE-2023-32360
- CVE-2023-32387
- CVE-2023-27945
- CVE-2023-32392
- CVE-2023-32384
- CVE-2023-32410
- CVE-2023-32413
- CVE-2023-32398
- CVE-2023-32352
- CVE-2023-32369
- CVE-2023-32405
- CVE-2023-32407
- CVE-2023-32380
- CVE-2023-32382
- CVE-2023-32403
- CVE-2023-32355
- CVE-2023-32395
- CVE-2023-32401
- CVE-2023-32357
- CVE-2023-32397
- CVE-2023-32412
- CVE-2023-23535
- CVE-2023-27940
- CVE-2023-32428
- CVE-2023-32375
- CVE-2023-32368
- CVE-2023-32408
- CVE-2023-32400
- CVE-2023-34352
- CVE-2023-32379
- CVE-2023-32371
- CVE-2023-32399
- CVE-2023-32414
- CVE-2023-32417
- CVE-2023-32372
- CVE-2023-32420
- CVE-2023-27930
- CVE-2023-29469
- CVE-2023-42869
- CVE-2023-42958
- CVE-2023-32437
- CVE-2023-32385
- CVE-2023-32390
- CVE-2023-32363
- CVE-2023-32367
- CVE-2023-32432
- CVE-2023-32391
- CVE-2023-32404
- CVE-2023-32394
- CVE-2023-32422
- CVE-2023-32376
- CVE-2023-22809
- CVE-2023-28202
- CVE-2023-32415
- CVE-2023-32402
- CVE-2023-32423
- CVE-2023-32409
- CVE-2023-28204
- CVE-2023-32373
- CVE-2023-32389
Frequently Asked Questions
What is the vulnerability ID of the authentication issue in CUPS?
The vulnerability ID of the authentication issue in CUPS is CVE-2023-32360.
What is the severity of CVE-2023-32360?
The severity of CVE-2023-32360 is high with a severity value of 6.5.
Which operating systems are affected by CVE-2023-32360?
CVE-2023-32360 affects macOS Big Sur (version up to 11.7.7), macOS Monterey (version up to 12.6.6), and macOS Ventura (version up to 13.4).
How can an unauthenticated user exploit CVE-2023-32360?
An unauthenticated user may be able to access recently printed documents.
Is there a fix available for CVE-2023-32360?
Yes, the vulnerability is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, and macOS Ventura 13.4.