cbcvebase.
CVE-2025-58436
published 2025-11-29

CVE-2025-58436: OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. Prior to version 2.4.15, a client that connects to cupsd…

medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. Prior to version 2.4.15, a client that connects to cupsd but sends slow messages, e.g. only one byte per second, delays cupsd as a whole, such that it becomes unusable by other clients. This issue has been patched in version 2.4.15.

Affected

13 ranges
VendorProductVersion rangeFixed in
applecups>= 0 < 2.4.15-12.4.15-1
applecups>= 0 < 2.4.1op1-1ubuntu4.162.4.1op1-1ubuntu4.16
applecups>= 0 < 2.4.7-1.2ubuntu7.92.4.7-1.2ubuntu7.9
applecups>= 0 < 2.4.12-0ubuntu3.52.4.12-0ubuntu3.5
applecups>= 0 < 2.1.3-4ubuntu0.11+esm122.1.3-4ubuntu0.11+esm12
applecups>= 0 < 2.2.7-1ubuntu2.10+esm102.2.7-1ubuntu2.10+esm10
applecups>= 0 < 2.3.1-9ubuntu1.9+esm42.3.1-9ubuntu1.9+esm4
debiancups< cups 2.4.15-1 (forky)cups 2.4.15-1 (forky)
msrcazl3_cups_2.4.13-1_on_azure_linux_3.0
msrcazl3_cups_2.4.16-1_on_azure_linux_3.0
msrccbl2_cups_2.3.3op2-10_on_cbl_mariner_2.0
msrccbl2_cups_2.3.3op2-11_on_cbl_mariner_2.0
openprintingcups< 2.4.152.4.15

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
osv5.5MEDIUM