Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-61915

Опубликовано: 29 нояб. 2025
Источник: nvd
CVSS3: 6
CVSS3: 6.7
EPSS Низкий

Описание

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. Prior to version 2.4.15, a user in the lpadmin group can use the cups web ui to change the config and insert a malicious line. Then the cupsd process which runs as root will parse the new config and cause an out-of-bound write. This issue has been patched in version 2.4.15.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:openprinting:cups:*:*:*:*:*:*:*:*
Версия до 2.4.15 (исключая)
cpe:2.3:o:opengroup:unix:-:*:*:*:*:*:*:*

EPSS

Процентиль: 6%
0.00025
Низкий

6 Medium

CVSS3

6.7 Medium

CVSS3

Дефекты

CWE-124

Связанные уязвимости

CVSS3: 6
ubuntu
2 месяца назад

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. Prior to version 2.4.15, a user in the lpadmin group can use the cups web ui to change the config and insert a malicious line. Then the cupsd process which runs as root will parse the new config and cause an out-of-bound write. This issue has been patched in version 2.4.15.

CVSS3: 6
msrc
2 месяца назад

OpenPrinting CUPS vulnerable to stack based out-of-bound write

CVSS3: 6
debian
2 месяца назад

OpenPrinting CUPS is an open source printing system for Linux and othe ...

suse-cvrf
2 месяца назад

Security update for cups

suse-cvrf
2 месяца назад

Security update for cups

EPSS

Процентиль: 6%
0.00025
Низкий

6 Medium

CVSS3

6.7 Medium

CVSS3

Дефекты

CWE-124