CVE-2026-107655
MEDIUM
NVD
CVSS Score
4
Severity
MEDIUM
Published
Oct 09, 2026
Vendor
unknown
Description
A flaw was found in CUPS. When processing embedded job ticket comments within documents, the service improperly handles specific IPP attributes, causing an unhandled null pointer dereference. An unauthenticated attacker permitted to submit jobs to a shared printer queue can send a crafted Internet Printing Protocol (IPP) request to crash the print daemon, resulting in a temporary Denial of Service (DoS) for all printing services.