https://seclists.org/oss-sec/2025/q3/165: CVE-2025-58060 cups: Authentication bypass with AuthType Negotiate
Published Sep 11, 2025
·Updated
Affected Software
1 affected component
OpenPrinting CUPS
Frequently Asked Questions
1
What is the severity of CVE-2025-58060?
CVE-2025-58060 is classified as a critical vulnerability due to its potential for unauthorized access through authentication bypass.
2
How does CVE-2025-58060 affect OpenPrinting CUPS?
CVE-2025-58060 allows attackers to bypass authentication mechanisms when using the AuthType Negotiate configuration in OpenPrinting CUPS.
3
What are the potential impacts of CVE-2025-58060?
The vulnerability can lead to unauthorized access to CUPS administration interfaces, allowing attackers to manipulate print services.
4
How do I fix CVE-2025-58060?
To fix CVE-2025-58060, update to the latest version of OpenPrinting CUPS that includes the security patch provided in the commit referenced in the official repository.
5
When was CVE-2025-58060 published?
CVE-2025-58060 was published on September 11, 2025.