Format string error in hplip - #VU101061
Published: November 30, 2024
Vulnerability identifier: #VU101061
CSH Severity: Low
CVSS v4: 8.5 [CVSS:4.0/AV:L/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N]
CVE-ID: N/A
CWE-ID: CWE-134
Exploitation vector: Local access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a format string error when handling a device URI connected via USB port. A local user can connect a malicious printer to the system and execute arbitrary code with root privileges.
Affected software
hplip
SUSE Linux Enterprise Desktop 15
SUSE Linux Enterprise High Performance Computing 15
SUSE Linux Enterprise Real Time 15
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server for SAP Applications 15
Basesystem Module
Desktop Applications Module
openSUSE Leap
hplip-debuginfo
hplip-sane
hplip-scan-utils-debuginfo
hplip-scan-utils
hplip-sane-debuginfo
hplip-hpijs
hplip-hpijs-debuginfo
hplip-debugsource
hplip
hplip-devel
hplip-udev-rules
SUSE Linux Enterprise Desktop 15
SUSE Linux Enterprise High Performance Computing 15
SUSE Linux Enterprise Real Time 15
SUSE Linux Enterprise Server 15
SUSE Linux Enterprise Server for SAP Applications 15
Basesystem Module
Desktop Applications Module
openSUSE Leap
hplip-debuginfo
hplip-sane
hplip-scan-utils-debuginfo
hplip-scan-utils
hplip-sane-debuginfo
hplip-hpijs
hplip-hpijs-debuginfo
hplip-debugsource
hplip
hplip-devel
hplip-udev-rules
Remediation
Install updates from vendor's website.
hplip - update to 3.24.4
hplip-debuginfo - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-sane - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-scan-utils-debuginfo - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-scan-utils - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-sane-debuginfo - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-hpijs - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-hpijs-debuginfo - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-debugsource - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-devel - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-udev-rules - update to 3.23.8-150600.4.3.1
hplip-debuginfo - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-sane - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-scan-utils-debuginfo - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-scan-utils - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-sane-debuginfo - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-hpijs - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-hpijs-debuginfo - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-debugsource - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-devel - addressed in versions 3.21.10-150400.3.14.1, 3.23.8-150600.4.3.1
hplip-udev-rules - update to 3.23.8-150600.4.3.1