PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws
Overview
PaperCut has released a new security maintenance update to address two significant vulnerabilities in its software that were being actively exploited. The updates are available for users of PaperCut NG/MF versions 26.0.5, 25.0.13, and 24.1.10. This move replaces earlier emergency patches that were initially issued to tackle these issues. It's crucial for users running these versions to apply the updates promptly to protect their systems from potential attacks. The vulnerabilities pose risks to the security of printing services and could allow unauthorized access or manipulation of sensitive information.
Key Takeaways
- Active Exploitation: This vulnerability is being actively exploited by attackers. Immediate action is recommended.
- Affected Systems: Affected products include PaperCut NG/MF versions 26.0.5, 25.0.13, and 24.1.10.
- Action Required: Users should download and install the security maintenance release for PaperCut NG/MF versions 26.
- Timeline: Newly disclosed
Original Article Summary
PaperCut on Thursday released a new security maintenance release that replaces all previously published emergency patches that were pushed to address two security flaws that have come under active exploitation. The software development company said PaperCut NG/MF versions 26.0.5, 25.0.13 and 24.1.10 are now available for customers to download. "These are Regular Maintenance Releases (MR) that
Impact
Affected products include PaperCut NG/MF versions 26.0.5, 25.0.13, and 24.1.10.
Exploitation Status
This vulnerability is confirmed to be actively exploited by attackers in real-world attacks. Organizations should prioritize patching or implementing workarounds immediately.
Timeline
Newly disclosed
Remediation
Users should download and install the security maintenance release for PaperCut NG/MF versions 26.0.5, 25.0.13, and 24.1.10 to mitigate the vulnerabilities.
Additional Information
This threat intelligence is aggregated from trusted cybersecurity sources. For the most up-to-date information, technical details, and official vendor guidance, please refer to the original article linked below.
Related Topics: This incident relates to Vulnerability, Patch, Update.