Switch language한국어
Back to the list

New vulnerabilities affect printing software on Linux and Unix

TL;DR AI

Key summary

2 min read
  1. Security researchers found two vulnerabilities in CUPS 2.4.16 that can be combined for remote code execution without credentials.

  2. One flaw allows unauthenticated print jobs on shared queues; the other lets a local user force connections to malicious print services to overwrite files as root.

  3. Patches are available but no official CUPS update has been released yet, and public exploit samples plus AI tools make attacks easier to implement.

  4. Organizations should review printer queue configurations and restrict access until an official update is installed.

Read the original