{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3aopenprintingcups-browsed2.0.1/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:openprinting:cups-browsed:2.0.1:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":5.3,"id":"CVE-2024-47176"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["CUPS"],"_cs_severities":["high"],"_cs_tags":["vulnerability","rce","linux"],"_cs_type":"advisory","_cs_vendors":["OpenPrinting"],"content_html":"\u003cp\u003eThe Common Unix Printing System (CUPS) is affected by a security flaw, identified as CVE-2024-47176, which resides in the cups-browsed service. This service is responsible for discovering printers on a network. The vulnerability arises from improper handling of packet data received during the printer discovery process. A local attacker can craft malicious discovery packets that, when processed by cups-browsed, lead to the execution of arbitrary commands on the host system. Given that cups-browsed often runs with elevated privileges, this flaw poses a significant risk for privilege escalation and system compromise on affected Linux systems. Defenders should prioritize patching the CUPS stack and reviewing the necessity of the cups-browsed service in their environment.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows a local attacker to execute arbitrary code with the privileges of the cups-browsed service. This can lead to full system compromise, unauthorized data access, and persistence on the affected machine. This vulnerability affects Linux systems where CUPS and the associated cups-browsed service are deployed, potentially impacting enterprise workstations, servers, and embedded devices that utilize standard Linux printing configurations.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eUpdate the CUPS package to the latest version provided by your Linux distribution maintainer to address CVE-2024-47176.\u003c/li\u003e\n\u003cli\u003eDisable the cups-browsed service if network printer discovery is not required for the system function.\u003c/li\u003e\n\u003cli\u003eReview network configurations to restrict access to CUPS discovery ports if the service must remain enabled.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-12T16:45:30Z","date_published":"2026-08-12T16:45:30Z","id":"https://feed.craftedsignal.io/briefs/2026-08-cups-rce/","summary":"A vulnerability in the cups-browsed service allows a local attacker to achieve arbitrary code execution via malicious print queue discovery packets.","title":"Remote Code Execution Vulnerability in CUPS","url":"https://feed.craftedsignal.io/briefs/2026-08-cups-rce/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:openprinting:cups-Browsed:2.0.1:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}