Skip to main content

Threat Intelligence Database

Comprehensive database of the latest cyber threats affecting organizations worldwide. Filter and search to find specific threat intelligence relevant to your organization.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Package: pkg:github/CUPS

Threat Intelligence

Click on any threat for detailed analysis and mitigation recommendations

CVE-2026-107890 is a NULL pointer dereference vulnerability in OpenPrinting CUPS versions before 2.4.20. It occurs due to repeated IPP group tags in job-creation requests, leading to a NULL attribute name that causes the scheduler daemon (cupsd) to crash. This disruption affects all print queues. The vulnerability can be triggered by a single crafted Print-Job request if the client can reach the scheduler and submit jobs to an enabled queue that supports the document format. Anonymous submissions are possible depending on listener and access-control settings.

Join the discussion

CVE-2026-107888 is a medium severity vulnerability in OpenPrinting CUPS before version 2.4.20. It involves a NULL pointer dereference in the cupsdCheckJobs() function when a job marked as held on creation refers to a temporary printer that has been automatically deleted. This causes the cupsd process to terminate and interrupts all print queues it manages. The issue can be triggered by an unprivileged user under certain conditions.

Join the discussion

CVE-2026-107886 is a low severity double-free vulnerability in OpenPrinting CUPS versions from 1.4.8 up to but not including 2.4.20. It occurs in printer-class management when modifying class members, leading to a dangling pointer that can be freed twice. This flaw can cause a denial of service affecting the scheduler. Exploitation requires a client with SYSTEM-level privileges to modify and delete classes.

Join the discussion

CVE-2026-107885 is a resource-exhaustion vulnerability in OpenPrinting CUPS versions up to 2.4.20. It arises from improper handling of job submission timeouts in the cupsdCheckJobs() function, where timeout processing is suppressed for all pending jobs if any client connection has an ongoing Send-Document operation. This allows a client to hold an incomplete HTTP request, preventing unrelated jobs from timing out and causing accumulation of incomplete jobs until the MaxJobs limit is reached, which blocks new legitimate print submissions.

Join the discussion
0

Multiple vulnerabilities have been identified in CUPS (Common Unix Printing System), a print spooler that allows local and remote users to utilize printing functions via the Internet Printing Protocol (IPP). These vulnerabilities affect versions up to and including 2.4.20. No CVSS score is provided, and no known exploits are reported in the wild. The vulnerabilities are documented by the Bundesamt für Sicherheit in der Informationstechnik (BSI) under advisory WID-SEC-W-2026-1968.

Join the discussion

CVE-2026-41079 is a medium severity vulnerability in OpenPrinting CUPS versions prior to 2.4.17. It involves an out-of-bounds read triggered by a crafted SNMP response sent to the CUPS SNMP backend. This flaw allows reading up to 176 bytes beyond a stack buffer, leaking memory that is converted to UTF-8 and exposed as printer supply descriptions. These leaked strings can be viewed by authenticated users through IPP Get-Printer-Attributes responses and the CUPS web interface. The vulnerability does not impact integrity or availability and requires network adjacency but no privileges or user interaction. A fix is available in version 2.4.17.

Join the discussion

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 and prior, a use-after-free vulnerability exists in the CUPS scheduler (cupsd) when temporary printers are automatically deleted.cupsdDeleteTemporaryPrinters() in scheduler/printers.c calls cupsdDeletePrinter() without first expiring subscriptions that reference the printer, leaving cupsd_subscription_t.dest as a dangling pointer to freed heap memory. The dangling pointer is subsequently dereferenced at multiple code sites, causing a crash (denial of service) of the cupsd daemon. With heap grooming, this can be leveraged for code execution.

Join the discussion

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 and prior, an integer underflow vulnerability in _ppdCreateFromIPP() (cups/ppd-cache.c) allows any unprivileged local user to crash the cupsd root process by supplying a negative job-password-supported IPP attribute. The bounds check only caps the upper bound, so a negative value passes validation, is cast to size_t (wrapping to ~2^64), and is used as the length argument to memset() on a 33-byte stack buffer. This causes an immediate SIGSEGV in the cupsd root process. Combined with systemd's Restart=on-failure, an attacker can repeat the crash for sustained denial of service.

Join the discussion

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 and prior, in a network-exposed cupsd with a shared target queue, an unauthorized client can send a Print-Job to that shared PostScript queue without authentication. The server accepts a page-border value supplied as textWithoutLanguage, preserves an embedded newline through option escaping and reparse, and then reparses the resulting second-line PPD: text as a trusted scheduler control record. A follow-up raw print job can therefore make the server execute an attacker-chosen existing binary such as /usr/bin/vim as lp. At time of publication, there are no publicly available patches.

Join the discussion

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 and prior, there is a heap-based buffer overflow in the CUPS scheduler when building filter option strings from job attribute. At time of publication, there are no publicly available patches.

Join the discussion

Showing 1 to 10 of 15 results

Filters:Package: pkg:github/CUPS
Page 1 of 2
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses