Debian Cups vulnerabilities
116 known vulnerabilities affecting debian/cups.
Total CVEs
116
CISA KEV
0
Public exploits
16
Exploited in wild
1
Severity breakdown
CRITICAL13HIGH27MEDIUM49LOW27
Vulnerabilities
Page 4 of 6
CVE-2009-3553P4LOWCVSS 7.5fixed in cups 1.4.2-4 (bookworm)2009
CVE-2009-3553 [HIGH] CVE-2009-3553: cups - Use-after-free vulnerability in the abstract file-descriptor handling interface ...
Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS 1.3.7 and 1.3.10 allows remote attackers to cause a denial of service (daemon crash or hang) via a client disconnection during listing of a large number of print jobs, related to improperly maintaining a ref
debian
CVE-2010-0302P4HIGHCVSS 7.5fixed in cups 1.4.2-10 (bookworm)2010
CVE-2010-0302 [HIGH] CVE-2010-0302: cups - Use-after-free vulnerability in the abstract file-descriptor handling interface ...
Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS before 1.4.4, when kqueue or epoll is used, allows remote attackers to cause a denial of service (daemon crash or hang) via a client disconnection during listing of a large number of print jobs, related to i
debian
CVE-2018-4300P4MEDIUMCVSS 5.9fixed in cups 2.2.10-1 (bookworm)2018
CVE-2018-4300 [MEDIUM] CVE-2018-4300: cups - The session cookie generated by the CUPS web interface was easy to guess on Linu...
The session cookie generated by the CUPS web interface was easy to guess on Linux, allowing unauthorized scripted access to the web interface when the web interface is enabled. This issue affected versions prior to v2.2.10.
Scope: local
bookworm: resolved (fixed in 2.2.10-1)
bullseye: resolved (fixed in 2.2.10-1)
forky: resolved (fixed in 2.2.10-1)
sid: resolved (fixed
debian
CVE-2009-0791P4MEDIUMCVSS 6.8fixed in cups 1.3.10-1 (bookworm)2009
CVE-2009-0791 [MEDIUM] CVE-2009-0791: cups - Multiple integer overflows in Xpdf 2.x and 3.x and Poppler 0.x, as used in the p...
Multiple integer overflows in Xpdf 2.x and 3.x and Poppler 0.x, as used in the pdftops filter in CUPS 1.1.17, 1.1.22, and 1.3.7, GPdf, and kdegraphics KPDF, allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF file that triggers a heap-based buffer overflow, possibly related to (1) Decrypt.cxx, (2)
debian
CVE-2005-4873P4HIGHCVSS 7.5fixed in cups 1.1.23-10sarge1 (bookworm)2005
CVE-2005-4873 [HIGH] CVE-2005-4873: cups - Multiple stack-based buffer overflows in the phpcups PHP module for CUPS 1.1.23r...
Multiple stack-based buffer overflows in the phpcups PHP module for CUPS 1.1.23rc1 might allow context-dependent attackers to execute arbitrary code via vectors that result in long function parameters, as demonstrated by the cups_get_dest_options function in phpcups.c.
Scope: local
bookworm: resolved (fixed in 1.1.23-10sarge1)
bullseye: resolved (fixed in 1.1.23-10sarge1
debian
CVE-2009-0164P4LOWCVSS 6.4fixed in cups 1.3.10-1 (bookworm)2009
CVE-2009-0164 [MEDIUM] CVE-2009-0164: cups - The web interface for CUPS before 1.3.10 does not validate the HTTP Host header ...
The web interface for CUPS before 1.3.10 does not validate the HTTP Host header in a client request, which makes it easier for remote attackers to conduct DNS rebinding attacks.
Scope: local
bookworm: resolved (fixed in 1.3.10-1)
bullseye: resolved (fixed in 1.3.10-1)
forky: resolved (fixed in 1.3.10-1)
sid: resolved (fixed in 1.3.10-1)
trixie: resolved (fixed in 1.3.1
debian
CVE-2023-4504P4HIGHCVSS 7.0fixed in cups 2.4.2-3+deb12u2 (bookworm)2023
CVE-2023-4504 [HIGH] CVE-2023-4504: cups - Due to failure in validating the length provided by an attacker-crafted PPD Post...
Due to failure in validating the length provided by an attacker-crafted PPD PostScript document, CUPS and libppd are susceptible to a heap-based buffer overflow and possibly code execution. This issue has been fixed in CUPS version 2.4.7, released in September of 2023.
Scope: local
bookworm: resolved (fixed in 2.4.2-3+deb12u2)
bullseye: resolved (fixed in 2.3.3op2-3+deb1
debian
CVE-2025-58364P4MEDIUMCVSS 5.3fixed in cups 2.4.2-3+deb12u9 (bookworm)2025
CVE-2025-58364 [MEDIUM] CVE-2025-58364: cups - OpenPrinting CUPS is an open source printing system for Linux and other Unix-lik...
OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.12 and earlier, an unsafe deserialization and validation of printer attributes causes null dereference in the libcups library. This is a remote DoS vulnerability available in local subnet in default configurations. It can cause the cups & cups-browsed
debian
CVE-2022-26691P4MEDIUMCVSS 6.7fixed in cups 2.4.2-1 (bookworm)2022
CVE-2022-26691 [MEDIUM] CVE-2022-26691: cups - A logic issue was addressed with improved state management. This issue is fixed ...
A logic issue was addressed with improved state management. This issue is fixed in Security Update 2022-003 Catalina, macOS Monterey 12.3, macOS Big Sur 11.6.5. An application may be able to gain elevated privileges.
Scope: local
bookworm: resolved (fixed in 2.4.2-1)
bullseye: resolved (fixed in 2.3.3op2-3+deb11u2)
forky: resolved (fixed in 2.4.2-1)
sid: resolved (fi
debian
CVE-2005-3625P4CRITICALCVSS 10.0fixed in cups 1.1.22-7 (bookworm)2005
CVE-2005-3625 [CRITICAL] CVE-2005-3625: cups - Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, l...
Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely, as demonstrated using the (1) CCITTFaxDecode and (2) DCTDecode streams, aka "Infinite CPU spins."
Scope: local
bookworm: resolved (fixed in 1.1.22-7)
bullseye: resolved
debian
CVE-2017-18248P4MEDIUMCVSS 5.3fixed in cups 2.2.6-1 (bookworm)2017
CVE-2017-18248 [MEDIUM] CVE-2017-18248: cups - The add_job function in scheduler/ipp.c in CUPS before 2.2.6, when D-Bus support...
The add_job function in scheduler/ipp.c in CUPS before 2.2.6, when D-Bus support is enabled, can be crashed by remote attackers by sending print jobs with an invalid username, related to a D-Bus notification.
Scope: local
bookworm: resolved (fixed in 2.2.6-1)
bullseye: resolved (fixed in 2.2.6-1)
forky: resolved (fixed in 2.2.6-1)
sid: resolved (fixed in 2.2.6-1)
tri
debian
CVE-2007-5848P4HIGHCVSS 7.2fixed in cups 1.2.0 (bookworm)2007
CVE-2007-5848 [HIGH] CVE-2007-5848: cups - Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to ex...
Buffer overflow in CUPS in Apple Mac OS X 10.4.11 allows local admin users to execute arbitrary code via a crafted URI to the CUPS service.
Scope: local
bookworm: resolved (fixed in 1.2.0)
bullseye: resolved (fixed in 1.2.0)
forky: resolved (fixed in 1.2.0)
sid: resolved (fixed in 1.2.0)
trixie: resolved (fixed in 1.2.0)
debian
CVE-2005-3193P4LOWCVSS 5.1fixed in cups 1.1.23-13 (bookworm)2005
CVE-2005-3193 [MEDIUM] CVE-2005-3193: cups - Heap-based buffer overflow in the JPXStream::readCodestream function in the JPX ...
Heap-based buffer overflow in the JPXStream::readCodestream function in the JPX stream parsing code (JPXStream.c) for xpdf 3.01 and earlier, as used in products such as (1) Poppler, (2) teTeX, (3) KDE kpdf, (4) CUPS, and (5) libextractor allows user-assisted attackers to cause a denial of service (heap corruption) and possibly execute arbitrary code via a crafted PDF f
debian
CVE-2005-3191P4LOWCVSS 5.1fixed in cups 1.1.23-13 (bookworm)2005
CVE-2005-3191 [MEDIUM] CVE-2005-3191: cups - Multiple heap-based buffer overflows in the (1) DCTStream::readProgressiveSOF an...
Multiple heap-based buffer overflows in the (1) DCTStream::readProgressiveSOF and (2) DCTStream::readBaselineSOF functions in the DCT stream parsing code (Stream.cc) in xpdf 3.01 and earlier, as used in products such as (a) Poppler, (b) teTeX, (c) KDE kpdf, (d) pdftohtml, (e) KOffice KWord, (f) CUPS, and (g) libextractor allow user-assisted attackers to cause a denial
debian
CVE-2005-0206P4CRITICALCVSS 10.0fixed in cups 1.1.22-7 (bookworm)2005
CVE-2005-0206 [CRITICAL] CVE-2005-0206: cups - The patch for integer overflow vulnerabilities in Xpdf 2.0 and 3.0 (CVE-2004-088...
The patch for integer overflow vulnerabilities in Xpdf 2.0 and 3.0 (CVE-2004-0888) is incomplete for 64-bit architectures on certain Linux distributions such as Red Hat, which could leave Xpdf users exposed to the original vulnerabilities.
Scope: local
bookworm: resolved (fixed in 1.1.22-7)
bullseye: resolved (fixed in 1.1.22-7)
forky: resolved (fixed in 1.1.22-7)
si
debian
CVE-2014-5031P4MEDIUMCVSS 5.0fixed in cups 1.7.4-2 (bookworm)2014
CVE-2014-5031 [MEDIUM] CVE-2014-5031: cups - The web interface in CUPS before 2.0 does not check that files have world-readab...
The web interface in CUPS before 2.0 does not check that files have world-readable permissions, which allows remote attackers to obtains sensitive information via unspecified vectors.
Scope: local
bookworm: resolved (fixed in 1.7.4-2)
bullseye: resolved (fixed in 1.7.4-2)
forky: resolved (fixed in 1.7.4-2)
sid: resolved (fixed in 1.7.4-2)
trixie: resolved (fixed in 1.7
debian
CVE-2023-32360P4MEDIUMCVSS 5.5fixed in cups 2.4.2-3+deb12u2 (bookworm)2023
CVE-2023-32360 [MEDIUM] CVE-2023-32360: cups - An authentication issue was addressed with improved state management. This issue...
An authentication issue was addressed with improved state management. This issue is fixed in macOS Big Sur 11.7.7, macOS Monterey 12.6.6, macOS Ventura 13.4. An unauthenticated user may be able to access recently printed documents.
Scope: local
bookworm: resolved (fixed in 2.4.2-3+deb12u2)
bullseye: resolved (fixed in 2.3.3op2-3+deb11u4)
forky: resolved (fixed in 2.4
debian
CVE-2010-0540P4MEDIUMCVSS 6.0fixed in cups 1.4.4-1 (bookworm)2010
CVE-2010-0540 [MEDIUM] CVE-2010-0540: cups - Cross-site request forgery (CSRF) vulnerability in the web interface in CUPS bef...
Cross-site request forgery (CSRF) vulnerability in the web interface in CUPS before 1.4.4, as used on Apple Mac OS X 10.5.8, Mac OS X 10.6 before 10.6.4, and other platforms, allows remote attackers to hijack the authentication of administrators for requests that change settings.
Scope: local
bookworm: resolved (fixed in 1.4.4-1)
bullseye: resolved (fixed in 1.4.4-1)
f
debian
CVE-2002-1372P4HIGHCVSS 7.5fixed in cups 1.1.18-1 (bookworm)2002
CVE-2002-1372 [HIGH] CVE-2002-1372: cups - Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 does not properly check...
Common Unix Printing System (CUPS) 1.1.14 through 1.1.17 does not properly check the return values of various file and socket operations, which could allow a remote attacker to cause a denial of service (resource exhaustion) by causing file descriptors to be assigned and not released, as demonstrated by fanta.
Scope: local
bookworm: resolved (fixed in 1.1.18-1)
bullseye:
debian
CVE-2023-32324P4HIGHCVSS 7.5fixed in cups 2.4.2-3+deb12u1 (bookworm)2023
CVE-2023-32324 [HIGH] CVE-2023-32324: cups - OpenPrinting CUPS is an open source printing system. In versions 2.4.2 and prior...
OpenPrinting CUPS is an open source printing system. In versions 2.4.2 and prior, a heap buffer overflow vulnerability would allow a remote attacker to launch a denial of service (DoS) attack. A buffer overflow vulnerability in the function `format_log_line` could allow remote attackers to cause a DoS on the affected system. Exploitation of the vulnerability can be tri
debian