A potential security vulnerability has been identified in the HP Linux Imaging and Printing Software. This potential vulnerability may allow escalation of privileges and/or arbitrary code execution via an integer overflow in the hpcups processing path when handling crafted print data.
CVSS Details
- CVSS 4.0 Base Score: 9.3 (CRITICAL)
- CVSS 4.0 Vector: (CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X)
- CVSS 3.1 Base Score: 9.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | — | Upgrade libsane-hpaioUpgrade hplip-guiUpgrade hplip-libsUpgrade hplipUpgrade hplip-common | Jun 17, 2026 | Jun 16, 2026 |
| Debian | — | Upgrade hplip | Jul 27, 2026 | Jul 27, 2026 |
| Redhat_linux | — | Upgrade libsane-hpaio-debuginfoUpgrade hplip-debugsourceUpgrade hplip-commonUpgrade hplip-guiUpgrade hplip-libsNo solution existsUpgrade libsane-hpaioUpgrade hplip-libs-debuginfoUpgrade hplipUpgrade hplip-debuginfo | Jun 18, 2026 | May 20, 2026 |
| Rocky_linux | — | Upgrade hplipUpgrade hplip-libsUpgrade hplip-guiUpgrade hplip-libs-debuginfoUpgrade libsane-hpaioUpgrade hplip-debuginfoUpgrade libsane-hpaio-debuginfoUpgrade hplip-commonUpgrade hplip-debugsource | Jun 18, 2026 | Jun 17, 2026 |
| Ubuntu | — | Upgrade hplip | Jun 30, 2026 | May 20, 2026 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub