CVE-2026-34979 PUBLISHED

OpenPrinting CUPS: Heap overflow in `get_options()`

Assigner: GitHub_M
Reserved: 31.03.2026 Published: 03.04.2026 Updated: 03.04.2026

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.16 and prior, there is a heap-based buffer overflow in the CUPS scheduler when building filter option strings from job attribute. At time of publication, there are no publicly available patches.

Metrics

CVSS Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
CVSS Score: 5.3

Product Status

Vendor OpenPrinting
Product cups
Versions
  • Version <= 2.4.16 is affected

References

Problem Types

  • CWE-122: Heap-based Buffer Overflow CWE