The hp-plugin utility in HP Linux Imaging and Printing (HPLIP) makes it easier for man-in-the-middle attackers to execute arbitrary code by leveraging use of a short GPG key id from a keyserver to verify print plugin downloads.
oryginał ENCVSS Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HHP Linux Imaging And Printing
APPHp≤ 3.17.7
🔵
ZWERYFIKUJ U PRODUCENTA
Brak jednoznacznych danych o patchu. Sprawdź referencje od producenta.
Tagi
RCE
CWE
Referencje
Powiązane podatności
CVE-2026-8631CRITICAL9.3PL ✓ten sam produkt
RCE i eskalacja uprawnień w HP Linux Imaging and Printing (HPLIP) — integer overflow
CVE-2026-8632HIGH8.5ten sam produkt
A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software. This pot...
CVE-2025-43023MEDIUM5.9ten sam produkt
A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software documenta...
CVE-2017-5638CRITICAL9.8⚠ KEVPL ✓ten sam vendor
RCE w Apache Struts 2 poprzez błędną obsługę nagłówków HTTP (Jakarta Multipart parser)
CVE-2015-3113CRITICAL9.8⚠ KEVPL ✓ten sam vendor
RCE w Adobe Flash Player — heap-based buffer overflow (CVE-2015-3113)