The check_permission_v1 function in base/pkit.py in HP Linux Imaging and Printing (HPLIP) through 3.13.9 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race condition via a (1) setuid process or (2) pkexec process.
CVSS Details
- CVSS 3.1 Base Score: 7
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade hplipUpgrade libsane-hpaioUpgrade hplip-commonUpgrade hplip-libsUpgrade hpijsUpgrade hplip-gui | Dec 1, 2016 | Sep 23, 2013 |
| Debian | — | Upgrade hplip | Jul 30, 2024 | Sep 23, 2013 |
| Gentoo Linux | — | Upgrade sys-auth/polkit.Upgrade net-misc/spice-gtk.Upgrade sys-apps/systemd.Upgrade net-print/hplip.Upgrade app-emulation/libvirt. | Oct 30, 2017 | Sep 23, 2013 |
| Oracle_linux | — | Upgrade hplip-guiUpgrade hplip-libsUpgrade hplip-commonUpgrade hplipUpgrade libsane-hpaioUpgrade hpijs | Oct 16, 2024 | Sep 23, 2013 |
| Suse | — | Upgrade hplip-hpijsUpgrade hplipUpgrade hplip-sane | Dec 12, 2013 | Sep 23, 2013 |
| Ubuntu | — | Upgrade hplip | Nov 8, 2024 | Sep 23, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub