ELA-167-1 cups security update

session cookies with predictable seed

2019-09-21
Packagecups
Version1.5.3-5+deb7u11
Related CVEs CVE-2018-4300


An issue was found in cups, the Common UNIX Printing System(tm). Linux session cookies used a predictable random number seed.

This CVE is sometimes referenced as CVE-2018-4700. Please only use CVE-2018-4300 for it.



For Debian 7 Wheezy, these problems have been fixed in version 1.5.3-5+deb7u11.

We recommend that you upgrade your cups packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.