cups
Security Risk Profile
75
/100
highSecurity Risk Score
Comprehensive risk assessment based on 16 vulnerabilities, EPSS scores, exploitation status, and remediation availability.
📅 Data spans from December 31, 2005 to present
16
Total CVEs
8
Critical+High
0
Exploited
3
Unpatched
Threat Assessment
Avg CVSS
7.2
Base severity
Avg EPSS
0%
Exploit probability
Unpatched
3
Critical/High
Risk Level
75/100
high
Severity Distribution
Critical
4High
4Medium
5Low
0Exploit Likelihood
>50% chance
020-50%
05-20%
0<5%
0Age Distribution
Common Weaknesses (CWE)
1
Buffer Overflow
4
2
XSS
2
3
Input Validation
2
4
Integer Overflow
1
5
Double Free
1
Most Affected Products
1. cups CUPS16
2. Canonical Ubuntu Linux4
3. Debian Debian Linux2
4. debian/cups1
5. redhat/1.3.61
Recent Vulnerabilities
See more →https://seclists.org/oss-sec/2026/q2/165
unknown
cups: 8 various moderate vulnerabilities
4/17/2026🔧 No Patch
https://seclists.org/oss-sec/2025/q4/213
unknown
CVE-2025-58436 cups: Slow client communication leads to a possible DoS attack
11/27/2025🔧 No Patch
https://seclists.org/oss-sec/2024/q2/277
unknown
CVE-2024-35235 cups: Cupsd Listen arbitrary chmod 0140777
6/11/2024🔧 No Patch
CVE-2018-6553
CVSS 8.8high
AppArmor cupsd Sandbox Bypass Due to Use of Hard Links
8/10/2018
CVE-2015-1159
CVSS 4.3medium
5/14/2015🔧 No Patch
REDHAT-BUG-1221642
CVSS 4.0medium
5/14/2015🔧 No Patch
CVE-2015-1158
CVSS 10.0critical
5/14/2015🔧 No Patch
CVE-2014-8166
CVSS 8.8high
4/4/2014
REDHAT-BUG-558460
CVSS 7.0high
1/25/2010🔧 No Patch
REDHAT-BUG-486052
CVSS 4.0medium
2/18/2009🔧 No Patch
Monitor cups in Real-Time
Get instant alerts when new vulnerabilities are discovered. Stay ahead of security threats with SecAlerts.