CVE-2024-47850
CVSS Score
7.5
EPSS Score
0.0%
EPSS Percentile
0th
CUPS cups-browsed before 2.5b1 will send an HTTP POST request to an arbitrary destination and port in response to a single IPP UDP packet requesting a printer to be added, a different vulnerability than CVE-2024-47176. (The request is meant to probe the new printer but can be used to create DDoS amplification attacks.)
| Vendor | n/a |
| Product | n/a |
| Published | Oct 4, 2024 |
| Last Updated | Oct 11, 2024 |
Stay Ahead of the Next One
Get instant alerts for n/a n/a
Be the first to know when new high vulnerabilities affecting n/a n/a are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
n/a / n/a
n/a
References
github.com: https://github.com/OpenPrinting/cups akamai.com: https://www.akamai.com/blog/security-research/october-cups-ddos-threat github.com: https://github.com/OpenPrinting/cups-filters/security/advisories/GHSA-rq86-c7g6-r2h8 openwall.com: http://www.openwall.com/lists/oss-security/2024/10/04/1 security.netapp.com: https://security.netapp.com/advisory/ntap-20241011-0002/