SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-64611

HIGH · CVSS 7.5 EPSS 0.35% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-23 · Last synced 2026-08-22

CyberRota Analysis

AI-Generated

A vulnerability in libcupsfilters allows an attacker to exploit the cfIEEE1284NormalizeMakeModel() function, which can enter an infinite loop when handling an IEEE-1284 device ID with an empty model field. This results in excessive CPU consumption, potentially leading to a denial of service. Organizations that utilize printing services and networked printers should prioritize addressing this issue to mitigate the risk of service disruption.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit
GitHub PoC Links

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-64611
Severity
HIGH
CVSS
7.5
EPSS
0.35%

Original NVD Description

A flaw was found in libcupsfilters. The cfIEEE1284NormalizeMakeModel() function enters an infinite loop when processing a printer-advertised IEEE-1284 device ID with an empty model field, causing sustained CPU consumption. A network-adjacent attacker could exploit this by broadcasting a specially crafted printer advertisement, leading to denial of service.