OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems.
OpenPrinting CUPS versions prior to 2.4.17 contain a vulnerability where a network-adjacent attacker can send a crafted SNMP response to cause an out-of-bounds read of up to 176 bytes past a stack buffer. The leaked memory is converted and exposed as printer supply description strings visible to authenticated users via IPP Get-Printer-Attributes and the CUPS web interface. This vulnerability is fixed in version 2.4.17.
AI Analysis
Technical Summary
OpenPrinting CUPS, an open source printing system for Linux and Unix-like OSes, has a vulnerability in versions before 2.4.17. A crafted SNMP response sent by a network-adjacent attacker triggers an out-of-bounds read of up to 176 bytes beyond a stack buffer. The leaked memory is converted from UTF-16 to UTF-8 and stored as printer supply description strings, which authenticated users can view through IPP Get-Printer-Attributes responses and the CUPS web interface. This information disclosure vulnerability is resolved in version 2.4.17.
Potential Impact
The vulnerability allows an attacker with network adjacency to cause an out-of-bounds read, resulting in information disclosure of memory contents. The leaked data is visible to authenticated users via standard printer attribute queries and the web interface. There is no indication of integrity or availability impact. No known exploits in the wild have been reported.
Mitigation Recommendations
Upgrade affected CUPS installations to version 2.4.17 or later, where this vulnerability is fixed. Since this is an official fix, applying the update fully mitigates the issue. No additional vendor advisories indicate alternative mitigations or that no action is required.
OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems.
Description
OpenPrinting CUPS versions prior to 2.4.17 contain a vulnerability where a network-adjacent attacker can send a crafted SNMP response to cause an out-of-bounds read of up to 176 bytes past a stack buffer. The leaked memory is converted and exposed as printer supply description strings visible to authenticated users via IPP Get-Printer-Attributes and the CUPS web interface. This vulnerability is fixed in version 2.4.17.
CVSS v3.1
Score 4.3medium
Affected software
pkg:deb/ubuntu/[email protected]+esm13?arch=source&distro=esm-infra-legacy/xenialpkg:deb/ubuntu/[email protected]+esm10?arch=source&distro=esm-infra/bionicpkg:deb/ubuntu/[email protected]+esm4?arch=source&distro=esm-infra/focalpkg:deb/ubuntu/[email protected]?arch=source&distro=jammypkg:deb/ubuntu/[email protected]?arch=source&distro=noblepkg:deb/ubuntu/[email protected]?arch=source&distro=questingpkg:deb/ubuntu/[email protected]?arch=source&distro=resoluteRun on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
OpenPrinting CUPS, an open source printing system for Linux and Unix-like OSes, has a vulnerability in versions before 2.4.17. A crafted SNMP response sent by a network-adjacent attacker triggers an out-of-bounds read of up to 176 bytes beyond a stack buffer. The leaked memory is converted from UTF-16 to UTF-8 and stored as printer supply description strings, which authenticated users can view through IPP Get-Printer-Attributes responses and the CUPS web interface. This information disclosure vulnerability is resolved in version 2.4.17.
Potential Impact
The vulnerability allows an attacker with network adjacency to cause an out-of-bounds read, resulting in information disclosure of memory contents. The leaked data is visible to authenticated users via standard printer attribute queries and the web interface. There is no indication of integrity or availability impact. No known exploits in the wild have been reported.
Mitigation Recommendations
Upgrade affected CUPS installations to version 2.4.17 or later, where this vulnerability is fixed. Since this is an official fix, applying the update fully mitigates the issue. No additional vendor advisories indicate alternative mitigations or that no action is required.
Technical Details
- Gcve Source
- db.gcve.eu
- Osv Id
- UBUNTU-CVE-2026-41079
- Osv Schema Version
- 1.7.0
- Aliases
- []
- Ecosystems
- ["Ubuntu:Pro:16.04:LTS","Ubuntu:Pro:18.04:LTS","Ubuntu:Pro:20.04:LTS","Ubuntu:22.04:LTS","Ubuntu:24.04:LTS","Ubuntu:25.10","Ubuntu:26.04:LTS"]
- Database Specific Severity
- null
- Cvss Version
- 3.1
Threat ID: 6a5fd0851010f89cc2192cae
Added to database: 07/21/2026, 20:03:17 UTC
Last enriched: 07/22/2026, 00:45:27 UTC
Last updated: 07/31/2026, 19:22:58 UTC
Views: 18
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.