First published: Thu Jan 15 2009(Updated: )
hplip.postinst in HP Linux Imaging and Printing (HPLIP) 2.7.7 and 2.8.2 on Ubuntu allows local users to change the ownership of arbitrary files via unspecified manipulations in advance of an HPLIP installation or upgrade by an administrator, related to the product's attempt to correct the ownership of its configuration files within home directories.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Hewlett-Packard HPLIP | =2.7.7 | |
Hewlett-Packard HPLIP | =2.8.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-0122 is considered to have a medium severity due to its potential to allow local users to change ownership of arbitrary files.
To fix CVE-2009-0122, ensure that you upgrade HPLIP to a version later than 2.8.2.
CVE-2009-0122 affects HP Linux Imaging and Printing versions 2.7.7 and 2.8.2.
Local users who have access to the system are impacted by CVE-2009-0122.
The vulnerability in CVE-2009-0122 allows local users to manipulate ownership of files during HPLIP installation or upgrade.