logo

Multiple Vulnerabilities Disclosed in Linux-based CUPS Printing Service

ID: cecf9edb-0a24-5cd5-86be-4623401deb0b

STIX ID: report--cecf9edb-0a24-5cd5-86be-4623401deb0b

Feed Name: Arctic Wolf

Threat Score
60/100

Date Published: 2024-09-27

Date Updated: 2026-07-25

Author: Stefan Hostetler

...
...

### Executive Summary On 2024-09-26 Arctic Wolf published an advisory detailing four CUPS vulnerabilities (CVE-2024-47176, CVE-2024-47076, CVE-2024-47175, CVE-2024-47177) that permit attacker-controlled IPP attributes, PPD injection, and arbitrary command execution, with cups-browsed binding UDP 631 on all interfaces enabling remote-triggered IPP requests. The advisory assesses low risk of internet-exposed exploitation but highlights realistic LAN-based exploitation and recommends prompt patching, blocking outbound port 631, disabling cups-browsed where unnecessary, and inventorying hosts listening on port 631.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.