CVE-2017-15400: Google Chrome OS
High severity, CVSS 7.8. EPSS: 0.9% chance of exploitation in the next 30 days.
Insufficient restriction of IPP filters in CUPS in Google Chrome OS prior to 62.0.3202.74 allowed a remote attacker to execute a command with the same privileges as the cups daemon via a crafted PPD file, aka a printer zeroconfig CRLF issue.
Affected products
- Google Chrome OS: before 62.0.3202.74 (fixed in 62.0.3202.74)
Published 2018-02-07. Last modified 2026-06-17.