Impact
The vulnerability is a NULL pointer dereference in the CUPSD job scheduler that occurs when a held job refers to a temporary printer that has been automatically deleted. This causes CUPSD to terminate, disrupting all managed print queues. The description explicitly states that an unprivileged submission can trigger this failure, leading to a denial‑of‑service condition for the printing service.
Affected Systems
OpenPrinting CUPS installations running any version prior to 2.4.20 are affected. The issue is tied to the handling of jobs that have the job‑held‑on‑create flag in environments that use temporary printers. Versions 2.4.20 and later include the official fix.
Risk and Exploitability
The CVSS score of 5.1 places this vulnerability in the medium range, and no EPSS value is available, indicating limited publicly known exploitation data. It is not currently featured in CISA’s KEV catalog. The likely attack vector is local or network‑based unprivileged submissions that reference a temporary printer; upon triggering the NULL dereference, the service terminates, impacting availability for all users.
OpenCVE Enrichment