CVE-2026-87875: Cups: openprinting cups: heap out-of-bounds read in cupsutf32toutf8() via missing source-length bound

Overview

Severity
Medium (CVSS 4.3)
CVSS Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Exploit Status
Not Exploited
Patch Tuesday
2026-Sep
Released
2026-09-13
Last Updated
2026-09-14
EPSS Score
0.32% (percentile: 25.4%)

Affected Products (1)

Other

  • 21869-17084

Security Updates (1)

Revision History

  • 2026-09-13: Information published.
  • 2026-09-14: Information published.