216.73.217.80

CVE-2025-61915

· Published 29/11/2025 03:15 · Modified 04/12/2025 17:15

Labels: CVE-2025-61915 2025-11-29CVE-2025-61915CWE-124[email protected]

Essential information

Published
29/11/2025 03:15
Modified
04/12/2025 17:15
Author
Creator
CVSS
6.0 MEDIUM (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:C/C:N/I:N/A:H

CVSS metrics

Description

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. Prior to version 2.4.15, a user in the lpadmin group can use the cups web ui to change the config and insert a malicious line. Then the cupsd process which runs as root will parse the new config and cause an out-of-bound write. This issue has been patched in version 2.4.15.

NVD status

Status
Analyzed — CVE has had analysis completed and all data associations made.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
openprinting / cups cpe:2.3:a:openprinting:cups:*:*:*:*:*:*:*:*
opengroup / unix cpe:2.3:o:opengroup:unix:-:*:*:*:*:*:*:*

References