Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-91102

Опубликовано: 16 сент. 2026
Источник: redhat
CVSS3: 7.8

Описание

A flaw was found in HP Linux Imaging and Printing (HPLIP) software. Multiple vulnerabilities exist within several software components that could potentially allow an attacker to achieve remote code execution, escalate privileges, cause a denial of service, disclose information, or modify files without authorization under certain conditions.

Меры по смягчению последствий

To reduce the attack surface, restrict network access to systems running HPLIP if network printing or remote management features are not actively used. Alternatively, if HPLIP functionality is not required, the hplip package can be removed. To remove the package: sudo dnf remove hplip Removing the package will impact printing capabilities for HP devices.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10hplipAffected
Red Hat Enterprise Linux 6hplipOut of support scope
Red Hat Enterprise Linux 7hplipAffected
Red Hat Enterprise Linux 8hplipAffected
Red Hat Enterprise Linux 9hplipAffected

Показывать по

Дополнительная информация

Статус:

Important
Дефект:
CWE-494
https://bugzilla.redhat.com/show_bug.cgi?id=2535622HPLIP: HPLIP: Multiple vulnerabilities could lead to remote code execution

7.8 High

CVSS3

Связанные уязвимости

nvd
3 дня назад

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, information disclosure, or unauthorized file modification under certain conditions.

debian
3 дня назад

HP has identified and remediated multiple externally reported vulnerab ...

github
3 дня назад

HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, information disclosure, or unauthorized file modification under certain conditions.

7.8 High

CVSS3