Skip to main content

Vendor/product archive

hp / linux_imaging_and_printing_project CVEs

Beta · best-effort

11 CVEs tagged to hp / linux_imaging_and_printing_project0 Critical, 3 High, 4 Medium, 4 Low, 0 Unrated.

CVE-2012-6108

Published Feb 15, 2014

HP Linux Imaging and Printing (HPLIP) before 3.13.2 uses world-writable permissions for /var/log/hp and /var/log/hp/tmp, which allows local users to delete log files via standard…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-6402

Published Jan 5, 2014

base/pkit.py in HP Linux Imaging and Printing (HPLIP) through 3.13.11 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/hp-pkservice.log temporary f…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-6427

Published Dec 9, 2013

upgrade.py in the hp-upgrade service in HP Linux Imaging and Printing (HPLIP) 3.x through 3.13.11 launches a program from an http URL, which allows man-in-the-middle attackers to…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4325

Published Sep 23, 2013

The check_permission_v1 function in base/pkit.py in HP Linux Imaging and Printing (HPLIP) through 3.13.9 does not properly use D-Bus for communication with a polkit authority, whi…

CVSS 6.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2011-2722

Published May 25, 2012

The send_data_to_stdout function in prnt/hpijs/hpcupsfax.cpp in HP Linux Imaging and Printing (HPLIP) 3.x before 3.11.10 allows local users to overwrite arbitrary files via a syml…

CVSS 1.2 · Low
Vendor/product tagsBeta · best-effort

CVE-2011-2697

Published Jul 29, 2011

foomatic-rip-hplip in HP Linux Imaging and Printing (HPLIP) 3.11.5 allows remote attackers to execute arbitrary code via a crafted *FoomaticRIPCommandLine field in a .ppd file.

CVSS 6.8 · Medium
evidence mentions
1
Buzz score
11.9
Vendor/product tagsBeta · best-effort

CVE-2010-4267

Published Jan 20, 2011

Stack-based buffer overflow in the hpmud_get_pml function in io/hpmud/pml.c in Hewlett-Packard Linux Imaging and Printing (HPLIP) 1.6.7, 3.9.8, 3.10.9, and probably other versions…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2940

Published Aug 14, 2008

The alert-mailing implementation in HP Linux Imaging and Printing (HPLIP) 1.6.7 allows local users to gain privileges and send e-mail messages from the root account via vectors re…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2008-2941

Published Aug 14, 2008

The hpssd message parser in hpssd.py in HP Linux Imaging and Printing (HPLIP) 1.6.7 allows local users to cause a denial of service (process stop) via a crafted packet, as demonst…

CVSS 4.9 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-5208

Published Oct 13, 2007

hpssd in Hewlett-Packard Linux Imaging and Printing Project (hplip) 1.x and 2.x before 2.7.10 allows context-dependent attackers to execute arbitrary commands via shell metacharac…

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort
Showing 1-11 of 11 CVEsPage 1 of 1