CVE-2026-87876
CUPS: Mehrere Schwachstellen ermöglichen Offenlegung von Informationen
Beschreibung
Zwei fallbezogene Vergleiche bei aus Anfragen abgeleiteten Benutzernamen außerhalb des Hauptautorisierungspfads im CUPS-Scheduler (Drucker-ACL-Validierung und Filterung privater Attribute) könnten in bestimmten Konfigurationen das Umgehen von benutzerbasierten Zugriffskontrollen ermöglichen.
Quelle: BSI
Metriken
Weakness-Klassen (CWE)
CWE-178Base
Improper Handling of Case Sensitivity
The product does not properly account for differences in case sensitivity when accessing or determining the properties of a resource, leading to inconsistent results.
cwe.mitre.org →
Re-Analyse & Statuswechsel
Chronologie der NVD-Audit-Events für diese CVE — Reanalyses, CVSS-Updates, CPE-Diffs.
- CVE Modified2026-09-10 00:17 UTC· secalert@redhat.com
- Reference: https://github.com/OpenPrinting/cups/commit/88e67c00c130a45f3a1edf36686f7a0b2982fef8
- Reference: https://github.com/OpenPrinting/cups/commit/f56844dbe4a54a9f8e1aeb3b913fbee614156bdb
- CVE Modified2026-09-09 19:17 UTC· 134c704f-9b21-4f2e-91b3-4a467353bcc0
- Reference: https://github.com/OpenPrinting/cups/security/advisories/GHSA-r8jp-q6fh-g5r2
- SSVC: {"id":"CVE-2026-87876","role":"CISA Coordinator","options":[{"exploitation":"poc"},{"automatable":"no"},{"technicalIm…
- New CVE Received2026-09-09 17:17 UTC· secalert@redhat.com
- Description: Two case-insensitive comparisons on request-derived usernames outside the main authorization path in CUPS's scheduler (printer ACL validation and private-attribute filtering) could allow bypass of username-based access controls in certain configurations.
- CVSS V3.1: AV:A/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
- CWE: CWE-178
- Affected: New affected value received. <a href="https://github.com/CVEProject/cvelistV5/blob/main/cves/2026/87xxx/CVE-2026-87876.json">CVE-2026-87876</a>
Quellen & Referenzen
- https://access.redhat.com/security/cve/CVE-2026-87876vdb-entryx_refsource_REDHAT
- https://bugzilla.redhat.com/show_bug.cgi?id=2530991issue-trackingx_refsource_REDHAT
- https://github.com/OpenPrinting/cups/security/advisories/GHSA-r8jp-q6fh-g5r2
- https://github.com/OpenPrinting/cups/commit/88e67c00c130a45f3a1edf36686f7a0b2982fef8
- https://github.com/OpenPrinting/cups/commit/f56844dbe4a54a9f8e1aeb3b913fbee614156bdb
- https://access.redhat.com/security/cve/CVE-2026-87875vdb-entryx_refsource_REDHAT
- https://bugzilla.redhat.com/show_bug.cgi?id=2530994issue-trackingx_refsource_REDHAT
- https://github.com/OpenPrinting/cups/security/advisories/GHSA-559w-7676-3xrq
- https://github.com/OpenPrinting/cups/commit/0c6842fc615e8afa284136a092da8178abf5f142
- https://github.com/OpenPrinting/cups/commit/2b1dc178a2d2325135b855142e384f4e8c42d8e4
Verknüpfte CVEs
- CVE-2026-87876
Zwei fallbezogene Vergleiche bei aus Anfragen abgeleiteten Benutzernamen außerhalb des Hauptautorisierungspfads im CUPS-Scheduler (Drucke…
lowCVSSv3 3.0 - CVE-2026-87875
Die Funktion cupsUTF32ToUTF8() in CUPS's cups/transcode.c hat keine Quell-Längen-Begrenzung und kann über das Ende des Quell-Puffers hina…
mediumCVSSv3 4.3