CUPS 的 中的 函数缺少对源字符串长度的限制,因此可能读取超出源缓冲区末尾的数据,从而导致堆越界读取(heap out-of-bounds read)。该漏洞可通过 中解析由攻击者控制的 SNMP 耗材(supplies)描述信息而被触发。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Red Hat | Red Hat Enterprise Linux 10 | - |
cpe:/o:redhat:enterprise_linux:10
|
|
| Red Hat | Red Hat Enterprise Linux 6 | - |
cpe:/o:redhat:enterprise_linux:6
|
|
| Red Hat | Red Hat Enterprise Linux 7 | - |
cpe:/o:redhat:enterprise_linux:7
|
|
| Red Hat | Red Hat Enterprise Linux 8 | - |
cpe:/o:redhat:enterprise_linux:8
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| Red Hat | Red Hat Enterprise Linux 9 | - |
cpe:/o:redhat:enterprise_linux:9
|
|
| Red Hat | Red Hat Hardened Images | - |
cpe:/a:redhat:hummingbird:1
|
|
| Red Hat | Red Hat OpenShift Container Platform 4 | - |
cpe:/a:redhat:openshift:4
|
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-87766 | 8.8 HIGH | Bubblewrap: bubblewrap: symlink traversal via /oldroot allows writing files outside sandbo |
| CVE-2026-18147 | 8.1 HIGH | Freeipa: ipa: freeipa/idm: cross-site scripting vulnerability allows arbitrary code execut |
| CVE-2026-87874 | 8.1 HIGH | Community.general: community.general: memcached cache plugin deserializes untrusted pickle |
| CVE-2026-87853 | 7.5 HIGH | Sssd: sssd: idp authentication prefix comparison allows cross-user impersonation |
| CVE-2026-87872 | 6.8 MEDIUM | Community.general: community.general: ocapi module_utils (ocapi_command, ocapi_info) hardc |
| CVE-2026-19729 | 4.9 MEDIUM | Keycloak-services: keycloak-services: incomplete fix for arbitrary filesystem path probing |
| CVE-2026-87876 | 3.0 LOW | Cups: openprinting cups: remaining case-insensitive username matching in scheduler side pa |
No comments yet