Attacking CUPS: A ‘Half-Empty’ RCE Vulnerability?

Summary Security researcher, Simone Margaritelli, otherwise known as @evilsocket, has disclosed a vulnerability in OpenPrinting CUPS, an open source printing system for GNU/Linux systems.
This vulnerability is currently assigned 4 CVEs at the time of writing, all of which are reserved by a CNA (CERT).
CVE-2024-47176 CVE-2024-47076 CVE-2024-47175 CVE-2024-47177 The vulnerability allows an attacker to perform an unauthenticated remote code execution attack against systems running CUPS. Earlier, there was speculation from Simone that engineers from RedHat and Canonical have evaluated a CVSS:3.