OpenPrinting CUPS是OpenPrinting公司的一个适用于 Linux® 和其他类 Unix® 操作系统的基于标准的开源打印系统。 OpenPrinting CUPS 2.4.16及之前版本存在安全漏洞,该漏洞源于本地非特权用户可以强制cupsd使用可重用的授权令牌向攻击者控制的本地IPP服务进行身份验证,可能导致任意root文件覆盖和root命令执行。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| OpenPrinting | cups | <= 2.4.16 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-34978 | 6.5 MEDIUM | OpenPrinting CUPS: Path traversal in RSS notify-recipient-uri enables file write outside C |
| CVE-2026-34979 | 5.3 MEDIUM | OpenPrinting CUPS: Heap overflow in `get_options()` |
| CVE-2026-27447 | 4.8 MEDIUM | OpenPrinting CUPS: Authorization bypass via case-insensitive group-member lookup |
| CVE-2026-34980 | OpenPrinting CUPS: Shared PostScript queue lets anonymous Print-Job requests reach `lp` co |
No comments yet