CVE-2025-61915Medium· 6.0▾ SunlitOpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. Prior to version 2.4.15, a user in the lpadmin group can use the cups web ui to change the config and insert a malicious line. Then the …
▾ Sunlit zone — Low / medium · no exploitation signal
impact 33 · likelihood 0.1 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Last analysed / modified upstream
0.5%
OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. Prior to version 2.4.15, a user in the lpadmin group can use the cups web ui to change the config and insert a malicious line. Then the cupsd process which runs as root will parse the new config and cause an out-of-bound write. This issue has been patched in version 2.4.15.
cups < 2.4.15Upgrade past the affected range:
cups 2.4.15Connected by shared product, vendor, weakness, or advisory.
CVE-2025-58436Medium· 5.1OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems
CVE-2026-27447Medium· 4.8OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems
CVE-2026-34978Medium· 6.5OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems
CVE-2023-2008High· 8.2A flaw was found in the Linux kernel's udmabuf device driver, within a fault handler
CVE-2026-107222Medium· 6.5Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets
CVE-2026-107225Medium· 6.5Excelize is a Go language library for reading and writing Microsoft Excel spreadsheets