{"schema_version":"1.7.2","id":"OESA-2025-2334","modified":"2025-09-26T13:08:47Z","published":"2025-09-26T13:08:47Z","upstream":["CVE-2025-58060","CVE-2025-58364"],"summary":"cups security update","details":"CUPS is the standards-based, open source printing system developed by Apple Inc. for UNIX®-like operating systems. CUPS uses the Internet Printing Protocol (IPP) to support printing to local and network printers.\r\n\r\nSecurity Fix(es):\n\n[&apos;Hi all,\\n\\nthere is important security vulnerability in CUPS:\\n\\n\\n\\xa0\\xa0 Description\\n\\n\\n\\xa0\\xa0\\xa0\\xa0 Summary&apos;, &apos;Details&apos;, &apos;PoC\\n\\n- Configure CUPS with |DefaultAuthType Negotiate|.\\n- Start CUPS&apos;, &apos;- cat /etc/cups/cupsd.conf\\nhaha\\n\\n\\n\\xa0\\xa0\\xa0\\xa0 Impact&apos;, &apos;Patch&apos;, &apos;Have a nice day,\\n\\n\\nZdenek Dohnal\\n\\n--\\nZdenek Dohnal\\nSenior Software Engineer\\nRed Hat, BRQ-TPBC&apos;](CVE-2025-58060)\n\n[&apos;Hi all!&apos;, &apos;Description\\n\\n\\n\\xa0\\xa0\\xa0\\xa0 Summary&apos;, &apos;Details\\n\\nThe combination of:&apos;, &apos;Is shown in two places in OpenPrinting:\\n\\n|cups/scheduler/ipp.c libcupsfilters/cupsfilters/ipp.c |&apos;, &apos;PoC&apos;, &apos;Impact&apos;, &apos;Metrics:\\n\\n\\n\\xa0\\xa0\\xa0\\xa0\\xa0\\xa0 CVSS v3 base metrics\\n\\nAttack vector Adjacent\\nAttack complexity Low\\nPrivileges required None\\nUser interaction None\\nScope Unchanged\\nConfidentiality None\\nIntegrity None\\nAvailability High\\n\\nCredit -&apos;, &apos;Patch&apos;, &apos;Have a nice day!\\n\\n\\nZdenek\\n\\n--\\nZdenek Dohnal\\nSenior Software Engineer\\nRed Hat, BRQ-TPBC&apos;](CVE-2025-58364)","affected":[{"package":{"ecosystem":"openEuler:24.03-LTS-SP2","name":"cups","purl":"pkg:rpm/openEuler/cups&distro=openEuler-24.03-LTS-SP2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.4.7-7.oe2403sp2"}]}],"ecosystem_specific":{"aarch64":["cups-2.4.7-7.oe2403sp2.aarch64.rpm","cups-client-2.4.7-7.oe2403sp2.aarch64.rpm","cups-debuginfo-2.4.7-7.oe2403sp2.aarch64.rpm","cups-debugsource-2.4.7-7.oe2403sp2.aarch64.rpm","cups-devel-2.4.7-7.oe2403sp2.aarch64.rpm","cups-ipptool-2.4.7-7.oe2403sp2.aarch64.rpm","cups-libs-2.4.7-7.oe2403sp2.aarch64.rpm","cups-lpd-2.4.7-7.oe2403sp2.aarch64.rpm","cups-printerapp-2.4.7-7.oe2403sp2.aarch64.rpm"],"noarch":["cups-filesystem-2.4.7-7.oe2403sp2.noarch.rpm","cups-help-2.4.7-7.oe2403sp2.noarch.rpm"],"src":["cups-2.4.7-7.oe2403sp2.src.rpm"],"x86_64":["cups-2.4.7-7.oe2403sp2.x86_64.rpm","cups-client-2.4.7-7.oe2403sp2.x86_64.rpm","cups-debuginfo-2.4.7-7.oe2403sp2.x86_64.rpm","cups-debugsource-2.4.7-7.oe2403sp2.x86_64.rpm","cups-devel-2.4.7-7.oe2403sp2.x86_64.rpm","cups-ipptool-2.4.7-7.oe2403sp2.x86_64.rpm","cups-libs-2.4.7-7.oe2403sp2.x86_64.rpm","cups-lpd-2.4.7-7.oe2403sp2.x86_64.rpm","cups-printerapp-2.4.7-7.oe2403sp2.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:20.03-LTS-SP4","name":"cups","purl":"pkg:rpm/openEuler/cups&distro=openEuler-20.03-LTS-SP4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.2.13-22.oe2003sp4"}]}],"ecosystem_specific":{"aarch64":["cups-2.2.13-22.oe2003sp4.aarch64.rpm","cups-debuginfo-2.2.13-22.oe2003sp4.aarch64.rpm","cups-debugsource-2.2.13-22.oe2003sp4.aarch64.rpm","cups-devel-2.2.13-22.oe2003sp4.aarch64.rpm","cups-libs-2.2.13-22.oe2003sp4.aarch64.rpm"],"noarch":["cups-help-2.2.13-22.oe2003sp4.noarch.rpm"],"src":["cups-2.2.13-22.oe2003sp4.src.rpm"],"x86_64":["cups-2.2.13-22.oe2003sp4.x86_64.rpm","cups-debuginfo-2.2.13-22.oe2003sp4.x86_64.rpm","cups-debugsource-2.2.13-22.oe2003sp4.x86_64.rpm","cups-devel-2.2.13-22.oe2003sp4.x86_64.rpm","cups-libs-2.2.13-22.oe2003sp4.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:22.03-LTS-SP3","name":"cups","purl":"pkg:rpm/openEuler/cups&distro=openEuler-22.03-LTS-SP3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.4.0-15.oe2203sp3"}]}],"ecosystem_specific":{"aarch64":["cups-2.4.0-15.oe2203sp3.aarch64.rpm","cups-client-2.4.0-15.oe2203sp3.aarch64.rpm","cups-debuginfo-2.4.0-15.oe2203sp3.aarch64.rpm","cups-debugsource-2.4.0-15.oe2203sp3.aarch64.rpm","cups-devel-2.4.0-15.oe2203sp3.aarch64.rpm","cups-ipptool-2.4.0-15.oe2203sp3.aarch64.rpm","cups-libs-2.4.0-15.oe2203sp3.aarch64.rpm","cups-lpd-2.4.0-15.oe2203sp3.aarch64.rpm","cups-printerapp-2.4.0-15.oe2203sp3.aarch64.rpm"],"noarch":["cups-filesystem-2.4.0-15.oe2203sp3.noarch.rpm","cups-help-2.4.0-15.oe2203sp3.noarch.rpm"],"src":["cups-2.4.0-15.oe2203sp3.src.rpm"],"x86_64":["cups-2.4.0-15.oe2203sp3.x86_64.rpm","cups-client-2.4.0-15.oe2203sp3.x86_64.rpm","cups-debuginfo-2.4.0-15.oe2203sp3.x86_64.rpm","cups-debugsource-2.4.0-15.oe2203sp3.x86_64.rpm","cups-devel-2.4.0-15.oe2203sp3.x86_64.rpm","cups-ipptool-2.4.0-15.oe2203sp3.x86_64.rpm","cups-libs-2.4.0-15.oe2203sp3.x86_64.rpm","cups-lpd-2.4.0-15.oe2203sp3.x86_64.rpm","cups-printerapp-2.4.0-15.oe2203sp3.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:22.03-LTS-SP4","name":"cups","purl":"pkg:rpm/openEuler/cups&distro=openEuler-22.03-LTS-SP4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.4.0-15.oe2203sp4"}]}],"ecosystem_specific":{"aarch64":["cups-2.4.0-15.oe2203sp4.aarch64.rpm","cups-client-2.4.0-15.oe2203sp4.aarch64.rpm","cups-debuginfo-2.4.0-15.oe2203sp4.aarch64.rpm","cups-debugsource-2.4.0-15.oe2203sp4.aarch64.rpm","cups-devel-2.4.0-15.oe2203sp4.aarch64.rpm","cups-ipptool-2.4.0-15.oe2203sp4.aarch64.rpm","cups-libs-2.4.0-15.oe2203sp4.aarch64.rpm","cups-lpd-2.4.0-15.oe2203sp4.aarch64.rpm","cups-printerapp-2.4.0-15.oe2203sp4.aarch64.rpm"],"noarch":["cups-filesystem-2.4.0-15.oe2203sp4.noarch.rpm","cups-help-2.4.0-15.oe2203sp4.noarch.rpm"],"src":["cups-2.4.0-15.oe2203sp4.src.rpm"],"x86_64":["cups-2.4.0-15.oe2203sp4.x86_64.rpm","cups-client-2.4.0-15.oe2203sp4.x86_64.rpm","cups-debuginfo-2.4.0-15.oe2203sp4.x86_64.rpm","cups-debugsource-2.4.0-15.oe2203sp4.x86_64.rpm","cups-devel-2.4.0-15.oe2203sp4.x86_64.rpm","cups-ipptool-2.4.0-15.oe2203sp4.x86_64.rpm","cups-libs-2.4.0-15.oe2203sp4.x86_64.rpm","cups-lpd-2.4.0-15.oe2203sp4.x86_64.rpm","cups-printerapp-2.4.0-15.oe2203sp4.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:24.03-LTS","name":"cups","purl":"pkg:rpm/openEuler/cups&distro=openEuler-24.03-LTS"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.4.7-7.oe2403sp1"}]}],"ecosystem_specific":{"aarch64":["cups-2.4.7-7.oe2403sp2.aarch64.rpm","cups-client-2.4.7-7.oe2403sp2.aarch64.rpm","cups-debuginfo-2.4.7-7.oe2403sp2.aarch64.rpm","cups-debugsource-2.4.7-7.oe2403sp2.aarch64.rpm","cups-devel-2.4.7-7.oe2403sp2.aarch64.rpm","cups-ipptool-2.4.7-7.oe2403sp2.aarch64.rpm","cups-libs-2.4.7-7.oe2403sp2.aarch64.rpm","cups-lpd-2.4.7-7.oe2403sp2.aarch64.rpm","cups-printerapp-2.4.7-7.oe2403sp2.aarch64.rpm","cups-2.4.7-7.oe2403.aarch64.rpm","cups-client-2.4.7-7.oe2403.aarch64.rpm","cups-debuginfo-2.4.7-7.oe2403.aarch64.rpm","cups-debugsource-2.4.7-7.oe2403.aarch64.rpm","cups-devel-2.4.7-7.oe2403.aarch64.rpm","cups-ipptool-2.4.7-7.oe2403.aarch64.rpm","cups-libs-2.4.7-7.oe2403.aarch64.rpm","cups-lpd-2.4.7-7.oe2403.aarch64.rpm","cups-printerapp-2.4.7-7.oe2403.aarch64.rpm","cups-2.4.7-7.oe2403sp1.aarch64.rpm","cups-client-2.4.7-7.oe2403sp1.aarch64.rpm","cups-debuginfo-2.4.7-7.oe2403sp1.aarch64.rpm","cups-debugsource-2.4.7-7.oe2403sp1.aarch64.rpm","cups-devel-2.4.7-7.oe2403sp1.aarch64.rpm","cups-ipptool-2.4.7-7.oe2403sp1.aarch64.rpm","cups-libs-2.4.7-7.oe2403sp1.aarch64.rpm","cups-lpd-2.4.7-7.oe2403sp1.aarch64.rpm","cups-printerapp-2.4.7-7.oe2403sp1.aarch64.rpm"],"noarch":["cups-filesystem-2.4.7-7.oe2403sp2.noarch.rpm","cups-help-2.4.7-7.oe2403sp2.noarch.rpm","cups-filesystem-2.4.7-7.oe2403.noarch.rpm","cups-help-2.4.7-7.oe2403.noarch.rpm","cups-filesystem-2.4.7-7.oe2403sp1.noarch.rpm","cups-help-2.4.7-7.oe2403sp1.noarch.rpm"],"src":["cups-2.4.7-7.oe2403sp2.src.rpm","cups-2.4.7-7.oe2403.src.rpm","cups-2.4.7-7.oe2403sp1.src.rpm"],"x86_64":["cups-2.4.7-7.oe2403sp2.x86_64.rpm","cups-client-2.4.7-7.oe2403sp2.x86_64.rpm","cups-debuginfo-2.4.7-7.oe2403sp2.x86_64.rpm","cups-debugsource-2.4.7-7.oe2403sp2.x86_64.rpm","cups-devel-2.4.7-7.oe2403sp2.x86_64.rpm","cups-ipptool-2.4.7-7.oe2403sp2.x86_64.rpm","cups-libs-2.4.7-7.oe2403sp2.x86_64.rpm","cups-lpd-2.4.7-7.oe2403sp2.x86_64.rpm","cups-printerapp-2.4.7-7.oe2403sp2.x86_64.rpm","cups-2.4.7-7.oe2403.x86_64.rpm","cups-client-2.4.7-7.oe2403.x86_64.rpm","cups-debuginfo-2.4.7-7.oe2403.x86_64.rpm","cups-debugsource-2.4.7-7.oe2403.x86_64.rpm","cups-devel-2.4.7-7.oe2403.x86_64.rpm","cups-ipptool-2.4.7-7.oe2403.x86_64.rpm","cups-libs-2.4.7-7.oe2403.x86_64.rpm","cups-lpd-2.4.7-7.oe2403.x86_64.rpm","cups-printerapp-2.4.7-7.oe2403.x86_64.rpm","cups-2.4.7-7.oe2403sp1.x86_64.rpm","cups-client-2.4.7-7.oe2403sp1.x86_64.rpm","cups-debuginfo-2.4.7-7.oe2403sp1.x86_64.rpm","cups-debugsource-2.4.7-7.oe2403sp1.x86_64.rpm","cups-devel-2.4.7-7.oe2403sp1.x86_64.rpm","cups-ipptool-2.4.7-7.oe2403sp1.x86_64.rpm","cups-libs-2.4.7-7.oe2403sp1.x86_64.rpm","cups-lpd-2.4.7-7.oe2403sp1.x86_64.rpm","cups-printerapp-2.4.7-7.oe2403sp1.x86_64.rpm"]}},{"package":{"ecosystem":"openEuler:24.03-LTS-SP1","name":"cups","purl":"pkg:rpm/openEuler/cups&distro=openEuler-24.03-LTS-SP1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.4.7-7.oe2403sp1"}]}],"ecosystem_specific":{"aarch64":["cups-2.4.7-7.oe2403sp1.aarch64.rpm","cups-client-2.4.7-7.oe2403sp1.aarch64.rpm","cups-debuginfo-2.4.7-7.oe2403sp1.aarch64.rpm","cups-debugsource-2.4.7-7.oe2403sp1.aarch64.rpm","cups-devel-2.4.7-7.oe2403sp1.aarch64.rpm","cups-ipptool-2.4.7-7.oe2403sp1.aarch64.rpm","cups-libs-2.4.7-7.oe2403sp1.aarch64.rpm","cups-lpd-2.4.7-7.oe2403sp1.aarch64.rpm","cups-printerapp-2.4.7-7.oe2403sp1.aarch64.rpm"],"noarch":["cups-filesystem-2.4.7-7.oe2403sp1.noarch.rpm","cups-help-2.4.7-7.oe2403sp1.noarch.rpm"],"src":["cups-2.4.7-7.oe2403sp1.src.rpm"],"x86_64":["cups-2.4.7-7.oe2403sp1.x86_64.rpm","cups-client-2.4.7-7.oe2403sp1.x86_64.rpm","cups-debuginfo-2.4.7-7.oe2403sp1.x86_64.rpm","cups-debugsource-2.4.7-7.oe2403sp1.x86_64.rpm","cups-devel-2.4.7-7.oe2403sp1.x86_64.rpm","cups-ipptool-2.4.7-7.oe2403sp1.x86_64.rpm","cups-libs-2.4.7-7.oe2403sp1.x86_64.rpm","cups-lpd-2.4.7-7.oe2403sp1.x86_64.rpm","cups-printerapp-2.4.7-7.oe2403sp1.x86_64.rpm"]}}],"references":[{"type":"ADVISORY","url":"https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2025-2334"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-58060"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-58364"}],"database_specific":{"severity":"High"}}
