Known vulnerabilities in cups-client
Vendor:
SUSE
Software:
cups-client
Software CPE:
cpe:2.3:o:suse:cups-client:*:*:*:*:*:suse_linux:*:*
Website:
https://www.suse.com/
Total vulnerabilities:
19
Public exploits:
2
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
1.7.5-20.73.1
2.2.7-150000.3.96.1
1.7.5-20.70.1
2.2.7-150000.3.93.1
1.7.5-20.67.1
1.7.5-20.62.1
2.2.7-150000.3.86.1
2.2.7-150000.3.83.1
2.2.7-150000.3.80.1
2.2.7-150000.3.77.1
1.7.5-20.57.1
2.2.7-150000.3.72.1
1.7.5-20.54.1
2.2.7-150000.3.65.1
2.2.7-150000.3.62.1
2.2.7-150000.3.59.1
1.7.5-20.49.1
2.2.7-150000.3.54.1
1.7.5-20.46.1
2.2.7-150000.3.51.2
2.2.7-150000.3.46.1
1.7.5-20.39.1
2.2.7-150000.3.43.1
2.2.7-150000.3.32.1
2.2.7-3.26.1
1.7.5-20.36.1
1.3.9-8.46.56.18.1
Vulnerabilities (19)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU126468 - Out-of-bounds read CVE-2026-41079 |
CWE-125 | Low | 1.7.5-20.73.1 | 17.04.2026 |
SB2026041116 SB2026050301 SB2026051341 and 4 more |
||
| #VU125824 - Use After Free CVE-2026-39316 |
CWE-416 | Low | 1.7.5-20.67.1, 2.2.7-150000.3.93.1 | 11.04.2026 |
SB2026041116 SB2026041540 SB20260417108 and 13 more |
||
| #VU125822 - Integer underflow CVE-2026-39314 |
CWE-191 | Low | 2.2.7-150000.3.93.1 | 11.04.2026 |
SB2026041116 SB20260417108 SB20260417109 and 12 more |
||
| #VU124815 - Improper input validation CVE-2026-34978 |
CWE-20 | Medium | 1.7.5-20.67.1, 2.2.7-150000.3.93.1 | 02.04.2026 |
SB2026040206 SB20260417108 SB20260417109 and 11 more |
||
| #VU124814 - Incorrect Authorization CVE-2026-27447 |
CWE-863 | Low | 1.7.5-20.67.1, 2.2.7-150000.3.93.1 | 02.04.2026 |
SB2026040206 SB20260417108 SB20260417109 and 11 more |
||
| #VU124813 - Improper input validation CVE-2026-34980 |
CWE-20 | High | 1.7.5-20.62.1, 1.7.5-20.67.1, 2.2.7-150000.3.93.1 | 02.04.2026 |
SB2026040206 SB20260417145 SB20260417146 and 11 more |
||
| #VU124812 - Heap-based Buffer Overflow CVE-2026-34979 |
CWE-122 | Medium | 1.7.5-20.67.1, 2.2.7-150000.3.93.1 | 02.04.2026 |
SB2026040206 SB20260417108 SB20260417109 and 12 more |
||
| #VU124811 - Improper input validation CVE-2026-34990 |
CWE-20 | Low | 1.7.5-20.62.1, 2.2.7-150000.3.86.1 | 02.04.2026 |
SB2026040206 SB2026041665 SB20260417108 and 10 more |
||
| #VU118818 - Resource exhaustion CVE-2025-58436 |
CWE-400 | Low | 2.2.7-150000.3.77.1, 2.2.7-150000.3.80.1, 2.2.7-150000.3.83.1 | 27.11.2025 |
SB2025112765 SB2025112856 SB2025120406 and 16 more |
||
| #VU118817 - Out-of-bounds write CVE-2025-61915 |
CWE-787 | Low | 1.7.5-20.57.1, 2.2.7-150000.3.77.1 | 27.11.2025 |
SB2025112765 SB2025112772 SB2025112855 and 14 more |
||
| #VU115165 - NULL Pointer Dereference CVE-2025-58364 |
CWE-476 | Medium | 1.7.5-20.54.1, 2.2.7-150000.3.72.1 | 11.09.2025 |
SB2025091140 SB2025091147 SB2025091148 and 18 more |
||
| #VU115164 - Improper Authentication CVE-2025-58060 |
CWE-287 | High | 1.7.5-20.54.1, 2.2.7-150000.3.72.1 | 11.09.2025 |
SB2025091139 SB2025091141 SB2025091147 and 28 more |
||
| #VU97745 - Improper input validation CVE-2024-47175 |
CWE-20 | High | 2.2.7-150000.3.72.1 | 27.09.2024 |
SB2024092719 SB2024092722 SB2024092723 and 50 more |
||
| #VU92075 - UNIX Symbolic Link (Symlink) Following CVE-2024-35235 |
CWE-61 | Low | 1.7.5-20.49.1, 2.2.7-150000.3.59.1 | 13.06.2024 |
SB2024061389 SB2024061398 SB2024061399 and 29 more |
||
| #VU80932 - Off-by-one Error CVE-2023-4504 |
CWE-193 | High | 1.7.5-20.46.1, 2.2.7-150000.3.51.2 | 20.09.2023 |
SB2023092051 SB2023092052 SB2023092054 and 26 more |
||
| #VU77641 - Use After Free CVE-2023-34241 |
CWE-416 | Medium | 1.7.5-20.46.1, 2.2.7-150000.3.46.1 | 22.06.2023 |
SB2023062261 SB2023062272 SB2023062276 and 36 more |
||
| #VU76761 - Heap-based Buffer Overflow CVE-2023-32324 |
CWE-122 | Medium | 1.7.5-20.39.1, 2.2.7-150000.3.43.1 | 01.06.2023 |
SB2023060132 SB2023060133 SB2023060136 and 33 more |
||
| #VU76308 - Improper Authentication CVE-2023-32360 |
CWE-287 | Medium | 1.7.5-20.46.1, 2.2.7-150000.3.51.2 | 18.05.2023 |
SB2023051860 SB2023051901 SB2023051902 and 36 more |
||
| #VU63747 - Improper Authorization CVE-2022-26691 |
CWE-285 | High | 2.2.7-150000.3.32.1 | 26.05.2022 |
SB2022052625 SB2022052626 SB2022053018 and 30 more |