Описание
HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, information disclosure, or unauthorized file modification under certain conditions.
A flaw was found in HP Linux Imaging and Printing (HPLIP) Software. Multiple vulnerabilities in several software components could allow a remote attacker to execute arbitrary code, escalate privileges, or cause a denial of service. Additionally, these flaws could lead to information disclosure or unauthorized file modification under certain conditions.
Меры по смягчению последствий
If HP printer support is not required on the system, remove the HPLIP package to eliminate the attack surface. For Red Hat Enterprise Linux, use sudo dnf remove hplip. Removing this package will disable functionality for HP printers.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 10 | hplip | Fix deferred | ||
| Red Hat Enterprise Linux 6 | hplip | Out of support scope | ||
| Red Hat Enterprise Linux 7 | hplip | Fix deferred | ||
| Red Hat Enterprise Linux 8 | hplip | Fix deferred | ||
| Red Hat Enterprise Linux 9 | hplip | Fix deferred |
Показывать по
Дополнительная информация
Статус:
EPSS
6.6 Medium
CVSS3
Связанные уязвимости
HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, information disclosure, or unauthorized file modification under certain conditions.
HP has identified and remediated multiple externally reported vulnerab ...
HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, information disclosure, or unauthorized file modification under certain conditions.
EPSS
6.6 Medium
CVSS3