Impact
HP identified several critical weaknesses in its Linux Imaging and Printing Software (HPLIP). The documented issues revolve around a buffer overflow flaw (CWE-122) that can be triggered by crafted input to the printer service. When exploited, an attacker can gain code execution on the host, elevate privileges, crash the service, steal sensitive data, or modify files the printer process is allowed to write. The damage potential extends from isolated service disruption to full system compromise, depending on the extent of the privilege escalation achieved.
Affected Systems
The vulnerabilities affect HP’s HPLIP package for Linux, which is commonly installed on workstation and server systems that use HP printers. No specific version numbers are listed in the advisory, so all installations of HPLIP on Linux should be considered vulnerable until a patch is applied.
Risk and Exploitability
The CVSS score of 9.3 indicates critical severity. The EPSS value of less than 1% shows that, although the vulnerability exists, the current exploitation probability is low, likely because it requires the attacker to have network or local access to the printer spool service. The flaw is not yet listed in the CISA Known Exploited Vulnerabilities catalog. An attacker who can reach a vulnerable printer service from the network, or who has local privileges, could send malicious payloads that trigger the buffer overflow and obtain code execution. The high impact combined with the low exploitation probability recommends prompt remediation.
OpenCVE Enrichment