Описание
HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, information disclosure, or unauthorized file modification under certain conditions.
A flaw was found in HPLIP (HP Linux Imaging and Printing) software. This issue encompasses multiple vulnerabilities across several components, potentially allowing an attacker to achieve remote code execution, elevate their privileges, or cause a denial of service. Additionally, these flaws could lead to information disclosure or unauthorized file modification under certain conditions.
Меры по смягчению последствий
HPLIP is a collection of drivers for HP printers. If HP printers are not in use, the hplip package can be removed to eliminate the attack surface.
To remove the package:
sudo dnf remove hplip
This action may affect printing functionality for HP devices.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 10 | hplip | Fix deferred | ||
| Red Hat Enterprise Linux 6 | hplip | Out of support scope | ||
| Red Hat Enterprise Linux 7 | hplip | Fix deferred | ||
| Red Hat Enterprise Linux 8 | hplip | Fix deferred | ||
| Red Hat Enterprise Linux 9 | hplip | Fix deferred |
Показывать по
Дополнительная информация
Статус:
6.3 Medium
CVSS3
Связанные уязвимости
HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, information disclosure, or unauthorized file modification under certain conditions.
HP has identified and remediated multiple externally reported vulnerabilities within HPLIP. The findings affect several software components that could potentially enable remote code execution, privilege escalation, denial of service, information disclosure, or unauthorized file modification under certain conditions.
6.3 Medium
CVSS3