First published: Sun Jan 05 2014(Updated: )
base/pkit.py in HP Linux Imaging and Printing (HPLIP) through 3.13.11 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/hp-pkservice.log temporary file.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hp Linux Imaging And Printing Project | <=3.13.11 | |
Hp Linux Imaging And Printing Project | =3.9.2 | |
Hp Linux Imaging And Printing Project | =3.9.4 | |
Hp Linux Imaging And Printing Project | =3.9.4-b | |
Hp Linux Imaging And Printing Project | =3.9.4b | |
Hp Linux Imaging And Printing Project | =3.9.6 | |
Hp Linux Imaging And Printing Project | =3.9.8 | |
Hp Linux Imaging And Printing Project | =3.9.10 | |
Hp Linux Imaging And Printing Project | =3.9.12 | |
Hp Linux Imaging And Printing Project | =3.10.2 | |
Hp Linux Imaging And Printing Project | =3.10.5 | |
Hp Linux Imaging And Printing Project | =3.10.6 | |
Hp Linux Imaging And Printing Project | =3.10.9 | |
Hp Linux Imaging And Printing Project | =3.11.1 | |
Hp Linux Imaging And Printing Project | =3.11.3 | |
Hp Linux Imaging And Printing Project | =3.11.3-a | |
Hp Linux Imaging And Printing Project | =3.11.3a | |
Hp Linux Imaging And Printing Project | =3.11.5 | |
Hp Linux Imaging And Printing Project | =3.11.7 | |
Hp Linux Imaging And Printing Project | =3.11.10 | |
Hp Linux Imaging And Printing Project | =3.11.12 | |
Hp Linux Imaging And Printing Project | =3.12.2 | |
Hp Linux Imaging And Printing Project | =3.12.4 | |
Hp Linux Imaging And Printing Project | =3.12.6 | |
Hp Linux Imaging And Printing Project | =3.12.9 | |
Hp Linux Imaging And Printing Project | =3.12.10 | |
Hp Linux Imaging And Printing Project | =3.12.10-a | |
Hp Linux Imaging And Printing Project | =3.12.11 | |
Hp Linux Imaging And Printing Project | =3.13.2 | |
Hp Linux Imaging And Printing Project | =3.13.3 | |
Hp Linux Imaging And Printing Project | =3.13.4 | |
Hp Linux Imaging And Printing Project | =3.13.5 | |
Hp Linux Imaging And Printing Project | =3.13.6 | |
Hp Linux Imaging And Printing Project | =3.13.7 | |
Hp Linux Imaging And Printing Project | =3.13.8 | |
Hp Linux Imaging And Printing Project | =3.13.9 | |
Hp Linux Imaging And Printing Project | =3.13.10 | |
debian/hplip | 3.21.2+dfsg1-2 3.22.10+dfsg0-2 3.22.10+dfsg0-5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-6402 has a moderate severity level due to the potential for local file overrides.
To fix CVE-2013-6402, upgrade to a version of HP Linux Imaging and Printing newer than 3.13.11.
HP Linux Imaging and Printing versions up to and including 3.13.11 are affected by CVE-2013-6402.
CVE-2013-6402 allows local users to perform a symlink attack, potentially overwriting arbitrary files.
CVE-2013-6402 is a local vulnerability, requiring access to the affected system to exploit.