A new (yet undisclosed) Remote Code Execution Vulnerability has been identified in the CUPS printing system of Linux computers. As of now all versions/flavors of Linux are affected by it as long as you are running CUPS service.
Security researchers have identified a remote, unauthenticated code execution vulnerability in the CUPS printing subsystem of ALL flavors of Linux systems.
It is our understanding that this occurs in the default configuration of Linux, and a successful exploitation could lead to remote code execution as root. We have not yet seen or heard of any active exploits in the wild. However, we have seen active scanning on going.
Various distributions have announced patches for affected versions:
Ubuntu: https://ubuntu.com/blog/cups-remote-code-execution-vulnerability-fix-available
Debian:
RedHat: https://access.redhat.com/security/vulnerabilities/RHSB-2024-002
Upgrade your vulnerable CUPS package to a supported stable release as provided by your distribution and restart the cups-browsed service as soon as possible.
If CUPS cannot be updated, please uninstall the packages ...