logo

Recently patched CUPS flaw can be used to amplify DDoS attacks

ID: e3df1716-2523-5892-8647-d2a83562d53a

STIX ID: report--e3df1716-2523-5892-8647-d2a83562d53a

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2024-10-03

Date Updated: 2026-04-20

Author: Sergiu Gatlan

...
...

**CUPS CVE-2024-47176 enables high-amplification DDoS and RCE chains** — Akamai researchers show that a specially crafted single UDP packet to the cups-browsed daemon can cause vulnerable CUPS servers to generate much larger IPP/HTTP requests (up to ~600x amplification) and in some cases enter endless request loops; roughly 58,000 exposed servers could be abused for DDoS botnets, so administrators should patch or disable cups-browsed immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.