Critical Linux CUPS Vulnerabilities Expose Millions to Remote Attacks
Want more insights like this?
Two critical vulnerabilities have been discovered in Linux's Common Unix Printing System (CUPS), affecting virtually all Linux distributions. CVE-2025-58364 allows attackers to crash printing services through crafted printer responses, while CVE-2025-58060 enables authentication bypass on systems using non-Basic authentication methods like Kerberos or LDAP.
The DoS vulnerability targets the libcups library and can disrupt entire network printing services. The authentication bypass is more severe, letting attackers gain admin access by sending Basic auth headers when other authentication types are configured.
No patches are currently available for CUPS versions below 2.4.12. Network administrators should immediately restrict IPP port 631 access, disable cups-browsed service, and temporarily revert to Basic authentication with strong passwords until fixes arrive.
Source: Cyber Security News