Canon My Image Garden and CUPS Printer Driver for macOS Symbolic Link Vulnerability

Vulnerability

A vulnerability exists in the installers of Canon My Image Garden for macOS, version 3.6.8 and earlier, and the CUPS Printer Driver for macOS. The issue arises from improper validation of symbolic links, which may allow a local attacker with login privileges to exploit a crafted symbolic link during installation. This could lead to unauthorized modification of file or directory permissions.

Impact

Exploitation could result in unauthorized changes to file or directory permissions, allowing access to or modification of files that the user would not normally be able to alter.

Remediation

Users are advised to download and install the latest version of My Image Garden for macOS or the CUPS Printer Driver for macOS from the Canon Software & Drivers download page.

Added: May 29, 2026, 1:06 AM
Updated: May 29, 2026, 1:06 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
0.6
exploitability
3.0
remediation
0.0
relevance
9.4
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.