@FiLiS @elacheche "plus others" but won't give any details? I'm super skeptical tbh
prove one distro vendor confirmed this that isn't shipping glibc please
edit: ok so he's got a blog post up now and it does look like CUPS, but now I want this guy to get fucked by a dildo full of razor blades for lying about the impact
it is not an RCE against "all GNU/Linux and others", but an RCE against "possibly anything running CUPS that you can reach on the network"
Completely different scope. He was trolling for fame.
https://www.evilsocket.net/2024/09/26/Attacking-UNIX-systems-via-CUPS-Part-I/