MEDIUM🇬🇧 English

CVE-2026-39316

CVSS 4.0v3.1pub. 2026-04-07upd. 2026-04-16

OpenPrinting CUPS to otwarty system drukowania dla Linux i innych systemów Unix-like. W wersjach 2.4.16 i wcześniejszych istnieje vulnerability use-after-free w CUPS scheduler (cupsd) podczas automatycznego usuwania druku­rek tymczasowych. Funkcja cupsdDeleteTemporaryPrinters() w scheduler/printers.c wywołuje cupsdDeletePrinter() bez wcześniejszego wygaśnięcia subskrypcji odwołujących się do drukarki, pozostawiając cupsd_subscription_t.dest jako dangling pointer do zwolnionej pamięci heap. Ten dangling pointer jest później dereferencjonowany w wielu miejscach kodu, powodując crash demona cupsd (denial of service). Przy użyciu heap grooming, może być wykorzystany do code execution.

Pokaż oryginał (EN)

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 and prior, a use-after-free vulnerability exists in the CUPS scheduler (cupsd) when temporary printers are automatically deleted. cupsdDeleteTemporaryPrinters() in scheduler/printers.c calls cupsdDeletePrinter() without first expiring subscriptions that reference the printer, leaving cupsd_subscription_t.dest as a dangling pointer to freed heap memory. The dangling pointer is subsequently dereferenced at multiple code sites, causing a crash (denial of service) of the cupsd daemon. With heap grooming, this can be leveraged for code execution.

CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
  • Openprinting Cups

    APP
    Openprinting
    ≤ 2.4.16
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
Tagi
RCEDoSMemory
CWE
Referencje

Powiązane podatności

CVE-2025-58060HIGH8.0ten sam produkt

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versio...

CVE-2023-4504HIGH7.0ten sam produkt

Due to failure in validating the length provided by an attacker-crafted PPD PostScript document, CUPS and libp...

CVE-2023-32324HIGH7.5ten sam produkt

OpenPrinting CUPS is an open source printing system. In versions 2.4.2 and prior, a heap buffer overflow vulne...

CVE-2026-41079MEDIUM4.3ten sam produkt

OpenPrinting CUPS to system drukowania open source dla Linuksa i innych systemów uniksowych. Przed wersją 2.4....

CVE-2026-39314MEDIUM4.0ten sam produkt

OpenPrinting CUPS to otwartoźródłowy system drukowania dla Linuksa i innych systemów operacyjnych Unix-like. W...