[cups] Multiple security fixes in incoming new version 2.4.20
CUPS 2.4.20 will ship multiple security fixes under a revised disclosure policy.
CUPS maintainer Zdenek Dohnal said the upcoming 2.4.20 release contains multiple security fixes. Because of report volume and CVE assignment delays, flaws scoring above CVSS 7.0 will be embargoed, while lower-scoring issues will be fixed and published immediately under GHSA identifiers. The message names no CVE IDs and does not report exploitation.