Описание
A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software documentation. This potential vulnerability is due to the use of a weak code signing key, Digital Signature Algorithm (DSA).
A flaw was found in the HP Linux Imaging and Printing Software (HPLIP). This vulnerability is due to the use of a weak Digital Signature Algorithm (DSA) for code signing. A remote attacker could exploit this weakness to forge signatures, potentially leading to the execution of unauthorized code or tampering with the software. This could compromise the integrity and confidentiality of the affected system.
Отчет
This flaw relates to the method with which HP distributes the their HP imaging and printing software. Users who install this product via Red Hat package management tools are not affected.
Меры по смягчению последствий
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 10 | hplip | Fix deferred | ||
| Red Hat Enterprise Linux 6 | hplip | Out of support scope | ||
| Red Hat Enterprise Linux 7 | hplip | Out of support scope | ||
| Red Hat Enterprise Linux 8 | hplip | Fix deferred | ||
| Red Hat Enterprise Linux 9 | hplip | Fix deferred |
Показывать по
Дополнительная информация
Статус:
EPSS
5 Medium
CVSS3
Связанные уязвимости
A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software documentation. This potential vulnerability is due to the use of a weak code signing key, Digital Signature Algorithm (DSA).
A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software documentation. This potential vulnerability is due to the use of a weak code signing key, Digital Signature Algorithm (DSA).
A potential security vulnerability has been identified in the HP Linux ...
A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software documentation. This potential vulnerability is due to the use of a weak code signing key, Digital Signature Algorithm (DSA).
Уязвимость программного обеспечения HP Linux Imaging and Printing (HPLIP), связанная с ошибками проверки криптографической подписи, позволяющая нарушителю обойти существующие ограничения безопасности
EPSS
5 Medium
CVSS3